Netzwerksicherheit

🔴 CVE-2026-34910: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-34910: Critical Schwachstelle

A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS devices...

23. Mai 2026 Keine Kommentare
🟡 CVE-2026-48249: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-48249: Medium Schwachstelle

Open ISES Tickets before 3.44.2 disables TLS certificate verification in rm/incs/mobile_login.inc.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST)...

23. Mai 2026 Keine Kommentare
🟡 CVE-2026-48248: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-48248: Medium Schwachstelle

Open ISES Tickets before 3.44.2 disables TLS certificate verification in incs/login.inc.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST)...

23. Mai 2026 Keine Kommentare
🟡 CVE-2026-48247: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-48247: Medium Schwachstelle

Open ISES Tickets before 3.44.2 disables TLS certificate verification in incs/functions.inc.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST)...

23. Mai 2026 Keine Kommentare
🟡 CVE-2026-48246: Medium Schwachstelle ANWENDUNGSSICHERHEIT

🟡 CVE-2026-48246: Medium Schwachstelle

Open ISES Tickets before 3.44.2 disables TLS certificate verification in ajax/reports.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST)...

23. Mai 2026 Keine Kommentare
Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire Attacks NETZWERKSICHERHEIT

Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire Attacks

The U.S. Department of Justice (DoJ) on Thursday announced the arrest of a Canadian man in connection with allegedly operating...

23. Mai 2026 Keine Kommentare
First VPN Dismantled in Global Takedown Over Use by 25 Ransomware Groups NETZWERKSICHERHEIT

First VPN Dismantled in Global Takedown Over Use by 25 Ransomware Groups

Authorities in Europe and North America have announced the dismantling of a criminal virtual private network (VPN) service used by...

23. Mai 2026 Keine Kommentare
🟠 CVE-2026-48241: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-48241: High Schwachstelle

Open ISES Tickets before 3.44.2 contains hardcoded MySQL database credentials in loader.php (a public-facing database utility) that are committed to...

23. Mai 2026 Keine Kommentare
🔴 CVE-2026-33000: Critical Schwachstelle ANWENDUNGSSICHERHEIT

🔴 CVE-2026-33000: Critical Schwachstelle

A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in...

23. Mai 2026 Keine Kommentare
🔴 CVE-2026-34909: Critical Schwachstelle NETZWERKSICHERHEIT

🔴 CVE-2026-34909: Critical Schwachstelle

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to...

23. Mai 2026 Keine Kommentare