Skip to content

Menu
  • Home
Menu

CVE-2023-5502 – On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, a malicious supplicant may bypass authentication.

Posted on June 5, 2026

CVE ID :CVE-2023-5502 Published : June 4, 2026, 10:39 p.m. | 34 minutes ago Description :On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, and routing enabled on…

CVE-2024-27892 – On affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected (SSL Profiles Enabled).

Posted on June 5, 2026

CVE ID :CVE-2024-27892 Published : June 4, 2026, 10:33 p.m. | 41 minutes ago Description :Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should…

CVE-2024-27890 – On affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected (No SSL Profiles Enabled).

Posted on June 5, 2026

CVE ID :CVE-2024-27890 Published : June 4, 2026, 10:27 p.m. | 46 minutes ago Description :Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should…

CVE-2026-10871 – Shibby Tomato Web UI rc start_6rd_tunnel os command injection

Posted on June 5, 2026

CVE ID :CVE-2026-10871 Published : June 4, 2026, 10:16 p.m. | 57 minutes ago Description :A vulnerability has been found in Shibby Tomato 1.28.0000. This vulnerability affects the function start_6rd_tunnel of the file…

CVE-2026-48579 – Microsoft Exchange Online Information Disclosure Vulnerability

Posted on June 5, 2026

CVE ID :CVE-2026-48579 Published : June 4, 2026, 10 p.m. | 1 hour, 13 minutes ago Description :None Severity: 9.1 | CRITICAL Visit the link for more details, such as CVSS details, affected products,…

CVE-2026-7888 – Concrete CMS below 9.5.2 is vulnerable to PHP Object Injection via unserialize() calls in the Workflow, Form block, and File/Set components that lack the allowed_classes restriction.

Posted on June 4, 2026

CVE ID :CVE-2026-7888 Published : June 3, 2026, 7:16 p.m. | 3 hours, 57 minutes ago Description :Concrete CMS below 9.5.2 is vulnerable to PHP Object Injection via unserialize() calls in the Workflow, Form…

CVE-2026-36608 – Mercusys UPnP Port Forwarding Vulnerability

Posted on June 4, 2026

CVE ID :CVE-2026-36608 Published : June 3, 2026, 6:16 p.m. | 4 hours, 57 minutes ago Description :Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows UPnP AddPortMapping to forward external ports to the…

CVE-2026-36607 – Mercusys AC12G Brute-Force Vulnerability

Posted on June 4, 2026

CVE ID :CVE-2026-36607 Published : June 3, 2026, 6:16 p.m. | 4 hours, 57 minutes ago Description :Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows unauthenticated brute-force attacks via the TDDP password change…

CVE-2026-20230 – Cisco Unified Communications Manager SSRF Vulnerability

Posted on June 4, 2026

CVE ID :CVE-2026-20230 Published : June 3, 2026, 6:16 p.m. | 4 hours, 57 minutes ago Description :A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition…

CVE-2026-42321 – GLPI has stored XSS in asset locks

Posted on June 4, 2026

CVE ID :CVE-2026-42321 Published : June 3, 2026, 4:16 p.m. | 6 hours, 57 minutes ago Description :GLPI is a free asset and IT management software package. Starting in version 10.0.4 and prior to…

Posts pagination

1 2 … 90 Next

Site map

  • About Us
  • Privacy Policy
  • Terms & Conditions of Use
©2026 | Design: Newspaperly WordPress Theme