24h | 7d | 30d

Overview

  • SonicWall
  • SMA1000

01 Sep 2026
Published
03 Sep 2026
Updated

CVSS
Pending
EPSS
4.67%

Description

A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and perform unauthorized operations.

Statistics

  • 1 Post

Last activity: 22 hours ago

Bluesky

Profile picture fallback
SonicWall SMA1000 unauthenticated RCE (CVE-2026-83548 + SMA1000-9427 + CVE-2026-83549)
  • 0
  • 0
  • 0
  • 22h ago

Overview

  • SonicWall
  • SMA1000

01 Sep 2026
Published
03 Sep 2026
Updated

CVSS
Pending
EPSS
8.50%

Description

Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.

Statistics

  • 1 Post

Last activity: 22 hours ago

Bluesky

Profile picture fallback
SonicWall SMA1000 unauthenticated RCE (CVE-2026-83548 + SMA1000-9427 + CVE-2026-83549)
  • 0
  • 0
  • 0
  • 22h ago

Overview

  • Ivanti
  • Neurons for ITSM

08 Sep 2026
Published
09 Sep 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
2.09%

KEV

Description

A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.

Statistics

  • 1 Post

Last activity: 8 hours ago

Bluesky

Profile picture fallback
Ivanti Neurons for ITSMに8件の脆弱性、EPMMにも権限昇格 未認証RCEを含む9件を修正(CVE-2026-12744,CVE-2026-12745)他 rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #セキュリティ
  • 0
  • 0
  • 0
  • 8h ago

Overview

  • Ivanti
  • Neurons for ITSM

08 Sep 2026
Published
09 Sep 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
2.17%

KEV

Description

A Deserialization of Untrusted Data vulnerability in Ivanti Neurons for ITSM before 2026.2 allows a remote unauthenticated attacker to execute arbitrary code on the server.

Statistics

  • 1 Post

Last activity: 8 hours ago

Bluesky

Profile picture fallback
Ivanti Neurons for ITSMに8件の脆弱性、EPMMにも権限昇格 未認証RCEを含む9件を修正(CVE-2026-12744,CVE-2026-12745)他 rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #セキュリティ
  • 0
  • 0
  • 0
  • 8h ago

Overview

  • NetScaler
  • ADC

19 Aug 2026
Published
10 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.3)
EPSS
5.60%

Description

Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.

Statistics

  • 1 Post

Last activity: 20 hours ago

Fediverse

Profile picture fallback

¿Seguimos confiando demasiado?

Anderson hablaba de confianza en seguridad informática a comienzos de los años 70.

Más de cincuenta años después tenemos Cloud, SaaS, Zero Trust, MFA, PAM, EDR y tecnologías que en aquella época hubieran parecido ciencia ficción.

Entonces me hice una pregunta:

¿El problema también cambió?

En lugar de buscar la respuesta en otro paper, decidí mirar algunas vulnerabilidades recientes:

CVE-2026-20079
CVE-2026-19490
CVE-2025-25249
CVE-2026-20212

Authentication bypass, problemas de memoria, componentes de infraestructura...

Vulnerabilidades técnicamente muy diferentes.

Pero hay una pregunta interesante que podemos hacerle a cada una:

¿Qué tuvo que asumir el sistema para que esa vulnerabilidad pudiera existir?

De eso hablaremos próximamente

¿Seguimos confiando demasiado? —
De Anderson a la Inteligencia Artificial

  • 0
  • 0
  • 0
  • 20h ago

Overview

  • Cisco
  • Cisco NX-OS Software

02 Sep 2026
Published
03 Sep 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
0.53%

KEV

Description

A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute code with root privileges. This vulnerability exists because TCP ports 43210 and 43211 are accessible in the default Layer 3 (L3) virtual routing and forwarding (VRF). A successful exploit could allow the attacker to connect to an affected device and send crafted input that could be executed as code with root privileges. The exploitation of this vulnerability could also cause the S1HAL process to crash, which could cause the device to reload.

Statistics

  • 1 Post

Last activity: 20 hours ago

Fediverse

Profile picture fallback

¿Seguimos confiando demasiado?

Anderson hablaba de confianza en seguridad informática a comienzos de los años 70.

Más de cincuenta años después tenemos Cloud, SaaS, Zero Trust, MFA, PAM, EDR y tecnologías que en aquella época hubieran parecido ciencia ficción.

Entonces me hice una pregunta:

¿El problema también cambió?

En lugar de buscar la respuesta en otro paper, decidí mirar algunas vulnerabilidades recientes:

CVE-2026-20079
CVE-2026-19490
CVE-2025-25249
CVE-2026-20212

Authentication bypass, problemas de memoria, componentes de infraestructura...

Vulnerabilidades técnicamente muy diferentes.

Pero hay una pregunta interesante que podemos hacerle a cada una:

¿Qué tuvo que asumir el sistema para que esa vulnerabilidad pudiera existir?

De eso hablaremos próximamente

¿Seguimos confiando demasiado? —
De Anderson a la Inteligencia Artificial

  • 0
  • 0
  • 0
  • 20h ago
Showing 51 to 56 of 56 CVEs