Overview
- IBM
- MQ Appliance
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
🚨 RAPID RESPONSE: IBM MQ Pre-Authentication RCE [CVE-2026-10747]
A critical heap buffer overflow in IBM MQ could allow remote code execution before authentication. CVSS: 10.0.
Censys ARC observes IBM MQ web consoles on 120 hosts and 149 web properties Internet-wide. These numbers indicate IBM MQ presence, not confirmed vulnerable systems.
IBM has released fixes for affected MQ Server and MQ Appliance versions. No public PoC or reported active exploitation is known at this time.
Read the full analysis for affected versions, Internet observations, and remediation guidance. https://censys.com/advisory/cve-2026-10747/
Overview
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
Overview
Description
Statistics
- 2 Posts
Fediverse
Overview
Description
Statistics
- 1 Post
- 8 Interactions
Fediverse
🔎 NEXUS8 WEEKLY DIGEST · 💥 EXPLOIT
Cisco patches actively exploited email gateway zero-day (CVE-2026-76461)
Criminals are exploiting a critical Cisco Secure Email Gateway flaw that can turn a malicious email into root access. The vulnerability, tracked as CVE-2026-76461, carries a 9.8 CVSS score and affects physical and…
Also tracked this week: Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping · Check Point, Kaspersky, Tanium…
Overview
Description
Statistics
- 2 Posts
- 1 Interaction
Overview
- Microsoft
- Azure AI Foundry
Description
Statistics
- 2 Posts
- 1 Interaction
Overview
- GNU
- inetutils
Description
Statistics
- 1 Post
Fediverse
We preserved a 1994 Telnet bug for thirty years because industrial downtime costs money, only to discover clean exploitation is too tedious to bother weaponizing.
https://labs.watchtowr.com/a-32-year-old-bug-walks-into-a-telnet-server-gnu-inetutils-telnetd-cve-2026-32746/
Overview
Description
Statistics
- 2 Posts
Fediverse
🚨 In this week’s Threat Alert, we cover CVE-2025-4427, an authentication bypass in Ivanti Endpoint Manager Mobile (EPMM) that can be chained with CVE-2025-4428 for unauthenticated remote code execution. CrowdSec has observed 865 unique IP addresses sending requests matching the exploitation pattern since May 2025.
Read our latest article for the full analysis, protection recommendations, and more: https://www.crowdsec.net/vulntracking-report/ivanti-epmm-cve-2025-4427-authentication-bypass
Keep your network informed. Like and share this post!
Overview
- Thinking Software Technology
- EFence
Description
Statistics
- 1 Post
Fediverse
CVE-2026-89180: SQLi in Thinking Software EFence lets unauthenticated attackers read database contents. CVSS 7.5, no patch yet. Apply mitigations now. https://www.valtersit.com/cve/CVE-2026-89180/ #CVE #infosec #SQLi
Overview
Description
Statistics
- 1 Post
Fediverse
Exim 4.100.1 patches a serious Exim vulnerability set: Proxy Protocol heap flaws, a GnuTLS use-after-free, and SMTP smuggling (CVE-2026-94054). Upgrade now.
#Exim #EximVulnerability #SMTPsmuggling #ProxyProtocol #MailServerSecurity #CVE202694054