Friday, August 28, 2026
Follow on LinkedIn

Computer Vulnerability News

PHP Servers Vulnerability Exploited To Inject PacketCrypt Cryptocurrency Miner

A significant PHP server vulnerability identified as CVE-2024-4577 was exploited to inject PacketCrypt Classic Cryptocurrency Miner. This PHP CGI Argument Injection vulnerability allows an attacker to obtain remote code execution (RCE) on a vulnerable PHP version mostly running under Windows...

40,000+ CVEs Published In 2024, Marking A 38% Increase From 2023

The cybersecurity landscape witnessed unprecedented vulnerabilities during 2024, with a record-breaking 40,009 Common Vulnerabilities and Exposures (CVEs) published. This marks a staggering 38% increase from the 28,818 CVEs reported in 2023, highlighting the rapidly evolving nature of cyber threats. The surge...

Redis Server Vulnerabilities Let Attackers Execute Remote Code

Two critical vulnerabilities have been identified in Redis, the widely used in-memory database, potentially exposing millions of systems to denial-of-service (DoS) attacks and remote code execution (RCE). These flaws tracked as CVE-2024-51741 and CVE-2024-46981, highlight significant security risks for...

PoC Exploit Released For OpenSSH Arbitrary Code Execution Vulnerability

A proof-of-concept (PoC) exploit for the critical OpenSSH vulnerability CVE-2024-6387, also known as "regreSSHion," has been released, raising alarms across the cybersecurity community. The flaw, which affects millions of OpenSSH servers globally, allows unauthenticated, remote attackers to execute arbitrary...

 Session Smart Routers With Default Passwords Hacked By Mirai Malware

Juniper Networks has issued an urgent advisory following reports of Mirai malware infections targeting Session Smart Routers (SSRs) left with default passwords. The campaign, first detected on December 11, exploited weak security practices to compromise devices and use them...

Siemens UMC Vulnerability Let Remote Attacker Execute Arbitrary Code

A critical security flaw has been discovered in Siemens' User Management Component (UMC), potentially exposing numerous industrial control systems to remote attacks. The vulnerability, identified as CVE-2024-49775, allows unauthenticated, remote attackers to execute arbitrary code on affected systems, posing...

Foxit PDF Editor Vulnerabilities Let Attackers Execute Remote Code

Foxit Software has released updates for its widely used Foxit PDF Reader and Foxit PDF Editor, addressing critical security vulnerabilities that could allow attackers to execute remote code. The updates, version 2024.4 for both products, were made available on December...

BeyondTrust Remote Access & Support Flaw Enables Command Injection Attacks

BeyondTrust has disclosed a severe security vulnerability in its Privileged Remote Access (PRA) and Remote Support (RS) products that could allow attackers to execute unauthorized system commands. The vulnerability, tracked as CVE-2024-12356 with a critical CVSS score of 9.8,...

Critical Chrome Vulnerabilities Let Attackers Execute Remote Code – Update Now

Google has released a significant update for its Chrome browser, addressing multiple high-severity vulnerabilities that could potentially allow unauthorized memory access and other exploits. The Stable channel has been updated to version 131.0.6778.204/.205 for Windows and macOS and 131.0.6778.204 for...

Multiple GStreamer Vulnerabilities Impact Linux Distributions Using GNOME

A recent security investigation has uncovered a series of vulnerabilities in GStreamer, the open-source multimedia framework integral to GNOME-based Linux distributions. According to reports, vulnerabilities, spanning critical issues such as out-of-bounds writes, stack-buffer overflows, and null pointer dereferences, pose...

Latest News

Latest News