Johnson Controls has reported significant vulnerabilities in its C-CURE 9000 and Victor application server software that could allow attackers to execute arbitrary code remotely. Specifically, versions of the C-CURE 9000 and Victor applications up to v2.90_v3.0 and Victor Web versions up to v7.1 are impacted. An attacker on an adjacent network could exploit these flaws to compromise physical security controls and access sensitive information. The vulnerabilities have been assigned high to critical severity scores, highlighting the urgency for affected users to take action. Johnson Controls recommends upgrading to the latest versions and implementing various security measures to mitigate risks.
Articles tagged "CVE"
Found 574 articles
Recent vulnerabilities have been discovered in Panduit's IntraVUE software, affecting versions 3.2.1a14 and earlier. These security flaws could allow attackers to manipulate industrial control devices remotely without needing physical access or specialized tools. Notably, one vulnerability involves the storage of passwords in plaintext, which could expose sensitive credentials via the API. Users are urged to upgrade to version 3.2.1a16 or later to mitigate these risks. With potential impacts on critical infrastructure sectors including manufacturing, energy, and water systems, the urgency for organizations to update their software is high to prevent exploitation.
Help Net Security
Attackers are exploiting a serious authentication bypass vulnerability, identified as CVE-2026-16232, in Check Point's Security Management and Multi-Domain Security Management servers. These servers are crucial as they manage policy updates for Check Point's firewall products. The flaw allows unauthenticated individuals to acquire a login token, which they can then use to access the system with full administrative rights. This could enable them to make unauthorized changes to security policies and configurations. Check Point has confirmed that this vulnerability is actively being exploited, posing significant risks to organizations using their security management products.
Security Affairs
Check Point has issued urgent security updates to address a serious authentication bypass vulnerability in SmartConsole, identified as CVE-2026-16232, which has a CVSS score of 9.3. This flaw affects both Security Management and Multi-Domain Security Management (MDSM) systems and is currently being exploited in the wild. The vulnerability allows attackers to bypass authentication, potentially granting them unauthorized access to critical management functions. Given the severity of this flaw, it's crucial for organizations using these systems to apply the updates as soon as possible to mitigate the risk of exploitation. Users should ensure they are running the latest versions to maintain the security of their environments.
A newly disclosed vulnerability in the Linux kernel, known as RefluXFS and tracked as CVE-2026-64600, allows unprivileged local users to overwrite files owned by the root user on systems using the XFS filesystem. This flaw, which has been around for nine years, can grant persistent root access to attackers on default installations of Red Hat Enterprise Linux (RHEL), Fedora Server, and Amazon Linux. Researchers from Qualys demonstrated how this vulnerability can be exploited, raising significant concerns for system administrators and users of these platforms. Given the potential for local users to gain elevated privileges, it is crucial for affected organizations to assess their systems and apply necessary mitigations to prevent unauthorized access.
Check Point has issued security updates to fix several vulnerabilities affecting its Security Management and Multi-Domain Management (MDSM) products. Among these is a serious flaw, identified as CVE-2026-16232, which has a CVSS score of 9.3 and allows attackers to bypass authentication in the SmartConsole login process. This vulnerability is particularly concerning as it is currently being exploited in the wild, meaning malicious actors can gain full administrative access to affected systems. Companies using Check Point's management products need to apply these updates promptly to protect their environments from unauthorized access. The timely response to this patch is crucial for maintaining security integrity.
Help Net Security
Researchers at the University of Texas at Dallas analyzed 1,646 open source Common Vulnerabilities and Exposures (CVEs) that had multiple patches. They found that in many cases, the first patch in a series did not fully address the vulnerability, leaving systems exposed until subsequent patches were applied. This issue can lead to confusion for developers and security teams, as a CVE may be marked as resolved even though the flaw remains unpatched. The study raises concerns about the effectiveness of vulnerability management in open source software and the potential risks it poses for users relying on these patches to secure their systems. It's crucial for organizations using open source components to closely monitor patch sequences and ensure all related updates are applied to avoid leaving vulnerabilities unaddressed.
SCM feed for Latest
Recent reports indicate a significant rise in Common Vulnerabilities and Exposures (CVEs) related to the Linux kernel, raising concerns about how effectively these vulnerabilities can be managed. The increase in reported vulnerabilities suggests that both developers and users of Linux systems need to be vigilant. As these vulnerabilities can impact a wide range of applications and services, organizations relying on Linux-based systems are particularly at risk. This situation calls for prompt attention to security practices, including timely updates and patch management to mitigate potential exploitation. The surge in CVEs not only poses a serious challenge for system administrators but also highlights the ongoing need for robust security measures in open-source software.
Security Affairs
A newly disclosed vulnerability, tracked as CVE-2026-8933, poses a significant risk to Ubuntu users, particularly those running versions 24.04, 25.10, and 26.04. This flaw, identified by Qualys, allows local attackers to escalate their privileges to root level through a race condition in the snap-confine tool. The CVSS score of 7.8 indicates a high severity, meaning that attackers could exploit this vulnerability to gain complete control over affected systems. This is particularly concerning for users relying on default installations, as it could lead to unauthorized access and potential system compromise. Users should take immediate action to secure their systems against this vulnerability.
Researchers have identified a significant security flaw in the snap-confine tool used in Ubuntu desktop environments. This local privilege escalation vulnerability, tracked as CVE-2026-8933, allows unprivileged users to gain root access on default installations of Ubuntu Desktop versions 24.04, 25.10, and 26.04. With a CVSS score of 7.8, the flaw is considered high severity, meaning it poses a serious risk to affected systems. If exploited, an attacker could take full control of the system, potentially leading to data breaches or system compromise. Users of these Ubuntu versions should be aware of this vulnerability and take necessary precautions while awaiting a fix.
Cybersecurity researchers have identified a serious vulnerability in the Adobe Acrobat Chrome extension, which has around 314 million users. This flaw, known as HermeticReader and tracked as CVE-2026-48294, could allow malicious websites to access users' WhatsApp Web data without their knowledge. The vulnerability has a CVSS score of 7.4, indicating it poses a significant risk. Adobe has patched this issue, but it raises concerns about the security of extensions and the potential for data breaches. Users of the Adobe Acrobat extension should ensure they have updated to the latest version to protect their data.
The Hacker News
A serious security vulnerability has been discovered in Windmill, an open-source developer platform, allowing attackers to access arbitrary server files without authentication. This flaw, identified as CVE-2026-29059, has a CVSS score of 7.5 and affects the 'get_log_file' endpoint of the platform. Specifically, the issue arises from how the filename parameter is handled, enabling unauthorized users to exploit path traversal techniques to read sensitive files on the server. Researchers at VulnCheck have reported that this vulnerability is currently being exploited in the wild, raising urgent concerns for developers and organizations using Windmill. Users are advised to take immediate action to secure their systems as the risk of unauthorized data access increases significantly during active exploitation.
The Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog due to evidence of active exploitation. The vulnerabilities include CVE-2026-16232, which affects Check Point SmartConsole and involves improper authentication, and CVE-2026-50522, a deserialization issue in Microsoft SharePoint. These vulnerabilities are significant risks, especially for federal agencies, as they can allow attackers to gain total control over the affected systems. CISA's Binding Operational Directive (BOD) 26-04 mandates that federal agencies prioritize rapid remediation of such high-risk vulnerabilities. While this directive specifically applies to federal agencies, CISA encourages all organizations to adopt similar risk-based approaches to vulnerability management and remediation.
Help Net Security
Attackers are actively exploiting a serious remote code execution vulnerability in Microsoft SharePoint, identified as CVE-2026-50522. This vulnerability allows them to extract the IIS machine keys from on-premise SharePoint servers, enabling long-term access to the compromised systems. Following the release of public exploit code, researchers from WatchTowr reported successful attacks occurring just hours later. Companies using on-premise SharePoint installations need to be particularly vigilant, as the stolen machine keys can facilitate ongoing unauthorized access. It's crucial for organizations to patch this vulnerability promptly and take additional measures to secure their machine keys to prevent future exploitation.
Security Affairs
A serious remote code execution (RCE) vulnerability in Microsoft SharePoint, identified as CVE-2026-50522, is currently being exploited by attackers. This vulnerability has a CVSS score of 9.8, indicating its severity. It was patched during Microsoft's July 2026 Patch Tuesday, but following the release of public proof-of-concept (PoC) exploit code, researchers from watchTowr have observed active exploitation in the wild. Organizations using SharePoint need to ensure they have applied the latest updates to protect against potential breaches. The situation underscores the urgency for companies to stay current on security patches to mitigate risks associated with known vulnerabilities.