Warning: Two Unpatched Citrix NetScaler RCE Zero-Days Under Active Exploitation
Citrix NetScaler의 두 가지 제로데이 취약점이 활성 공격 중입니다.
Two zero-day vulnerabilities in Citrix NetScaler are actively being exploited.
AI가 선별한 아티클
Citrix NetScaler의 두 가지 제로데이 취약점이 활성 공격 중입니다.
Two zero-day vulnerabilities in Citrix NetScaler are actively being exploited.
F5 BIG-IP APM의 취약점이 악용되어 인증 없이 코드 실행이 가능해졌다고 보고됨.
A critical flaw in F5 BIG-IP APM allows unauthenticated RCE, impacting OAuth servers.
워드프레스에서 인증되지 않은 경로 탐색 취약점이 발견되었습니다.
A vulnerability in WordPress allows unauthenticated path traversal leading to conditional RCE.
Microsoft의 SharePoint 결함이 인증된 원격 코드 실행을 가능하게 하였습니다.
A SharePoint flaw initially classified by Microsoft as spoofing enables authenticated remote code execution.
워드프레스의 신규 취약점이 익명 댓글을 통해 RCE를 유발할 수 있음.
A new WordPress vulnerability allows anonymous comments to trigger RCE via admin session.
주간 보안 뉴스 요약: Cisco 0-Day와 브라우저 해킹 이슈.
Weekly security recap: Cisco 0-Day and browser hijacking issues.
SolarWinds가 Access Rights Manager의 원격 코드 실행 취약점을 수정했습니다.
SolarWinds patches a high-severity RCE vulnerability in Access Rights Manager.
Orkes Conductor에서 원격 코드 실행 취약점이 발생했다.
A critical RCE vulnerability in Orkes Conductor is being exploited in the wild.
중국의 위협 행위자가 Gitea 취약점을 악용하여 13개 조직을 공격했습니다.
Chinese threat actor Red Heron exploited Gitea vulnerability to compromise 13 organizations.
Forgejo <=16.0.3에서 발견된 심각한 원격 코드 실행 취약점.
Critical RCE vulnerability found in Forgejo <=16.0.3.
Check Point의 VPN 인증서 취약점이 발견되어 원격 코드를 실행할 수 있는 위험이 존재합니다.
Check Point disclosed VPN certificate flaws allowing unauthenticated remote code execution.
CISA가 N-able N-central의 심각한 보안 결함을 알려드렸습니다.
CISA warns of a severe security flaw in N-able N-central.
Telerik UI의 취약점을 이용한 원격 코드 실행 취약점이 공개되었습니다.
A remote code execution vulnerability in Telerik UI has been publicly exploited.
N-able은 N-central 플랫폼의 원격 관리 flaw에 대해 4번째 핫픽스를 발표했다.
N-able has issued a fourth hotfix for a remote management flaw in N-central.
모든 Chromium 버전에서 악용되는 샌드박스 원격 코드 실행 취약점이 발견되었습니다.
A remotely exploitable sandbox RCE vulnerability in all Chromium versions has been discovered.
GeoNetwork의 취약점이 정부 지리 포털 백엔드에 원격 코드 실행을 가능하게 함.
GeoNetwork vulnerabilities exploit unauthenticated RCE affecting government geoportal backends.
연구자들이 Anthropic의 Claude를 사용해 PLC 모델 간의 RCE 익스플로잇을 포팅했습니다.
Researchers used Anthropic's Claude to port an RCE exploit between PLC models.
Unitree G1 EDU 로봇의 RCE 취약점이 발견되었습니다.
Two RCE vulnerabilities found in Unitree G1 EDU robot.
Next.js의 두 가지 중대한 취약점에 대한 보안 패치가 발표되었습니다.
Vercel released security patches for two critical vulnerabilities in Next.js.
IoT 봇넷과 다양한 사이버 위협에 대한 최신 소식.
Latest news on IoT botnets and various cyber threats.
중요 Gitea 원격 코드 실행 취약점이 악용되고 있다.
Critical Gitea RCE vulnerability is being actively exploited.
신뢰할 수 있는 소스가 어떻게 악용되는지에 대한 경고와 AI 관련 취약점 논의.
Warning on how trusted sources are exploited and discussions on AI-related vulnerabilities.
폼인에이터 워드프레스 플러그인에서 치명적인 원격 코드 실행 취약점이 발견됨.
A critical RCE vulnerability found in the Forminator WordPress plugin.
GeoServer의 제로데이 취약점이 원격 코드 실행으로 이어질 수 있는 공격에 악용되고 있다.
A newly disclosed GeoServer zero-day vulnerability is being actively exploited, potentially leading to RCE.
AI를 활용한 SharePoint 취약점이 확인되었습니다.
An AI-assisted vulnerability in SharePoint allows unauthorized access.
CISA, Langflow 및 Tomcat의 원격 코드 실행 취약점을 발견하고 이를 경고했습니다.
CISA warns about discovered RCE vulnerabilities in Langflow and Tomcat, indicating active exploitation.
Ruflo의 중대한 보안 취약점이 발견되어 원격 코드 실행이 가능해졌다.
A critical security flaw in Ruflo allows unauthenticated remote code execution.
Gitea에서 원격 코드 실행 취약점이 발견되어 패치되었다.
A critical RCE vulnerability in Gitea has been patched.
Fastjson의 RCE 취약점에 대한 공격이 발생하고 있습니다.
Attacks are targeting an RCE vulnerability in Fastjson.
GitLab RCE 취약점에 대한 PoC가 공개되어 인증된 사용자가 명령을 실행할 수 있습니다.
A PoC for a GitLab RCE vulnerability lets authenticated users execute commands.