Siemens has alerted users to vulnerabilities affecting its RUGGEDCOM APE1808 device due to issues in Fortinet's FortiOS software. Two specific vulnerabilities, identified as CVE-2026-23573 and CVE-2026-59839, can allow attackers to execute unauthorized commands or access restricted files if they have the necessary privileges. These vulnerabilities could potentially impact critical sectors such as manufacturing, energy, and transportation. Siemens advises affected users to contact their customer support for more details on mitigation measures and to follow Fortinet's advisory for workarounds. This situation underscores the need for robust network security measures to safeguard critical infrastructure.
Articles tagged "CVE"
Found 571 articles
Adobe has released important security updates to address multiple critical vulnerabilities affecting its ColdFusion, Commerce, and Campaign Classic products. Among these, the most serious is a command injection flaw in ColdFusion, identified as CVE-2026-48362, which has a maximum severity score of 10.0 on the CVSS scale. If exploited, this vulnerability could allow attackers to execute arbitrary code on affected systems, leading to potential privilege escalation. This is particularly concerning for organizations that rely on these Adobe products, as successful exploitation could compromise sensitive data and system integrity. Users are strongly advised to apply the latest patches to mitigate these risks.
Help Net Security
In August 2026, Microsoft released patches addressing over 400 vulnerabilities, including a serious zero-day exploit identified as CVE-2026-68820. This particular flaw is a use-after-free vulnerability affecting the Windows Ancillary Function Driver for WinSock (AFD.sys), which could allow a low-privileged local attacker to gain elevated privileges to the SYSTEM level. This means that attackers with local access could potentially execute malicious applications to take control of affected systems. The urgency of this update is underscored by the fact that the vulnerability is already being exploited in the wild. Users and organizations relying on Windows systems should prioritize applying these updates to mitigate potential risks.
The Hacker News
Recent research from QUIRSO reveals that attackers are exploiting a severe vulnerability in Broadcom's VMware vCenter, identified as CVE-2026-59310, which has a CVSS score of 9.8. This directory-traversal flaw allows malicious users with network access to execute arbitrary code on the server, creating a significant risk for organizations using this software. The vulnerability is particularly concerning because it enables persistent remote access, potentially compromising sensitive systems. VMware has issued patches to address this flaw, but organizations must act quickly to implement them to protect against active exploitation. This incident serves as a reminder of the importance of timely updates in cybersecurity management.
A security researcher known as Chaotic Eclipse has released a proof of concept (PoC) for a new zero-day vulnerability named ShieldBreak, affecting Microsoft Defender. This vulnerability successfully bypasses the previously issued patch for CVE-2026-50656, known as RoguePlanet, which was intended to address a race condition. If exploited, ShieldBreak could allow attackers to execute code with SYSTEM-level privileges on affected systems. This presents a serious risk to users of Microsoft Defender, as the flaw can potentially compromise the security of their devices. Companies using Microsoft Defender should take immediate action to assess their systems and apply necessary security measures to mitigate this risk.
SAP has identified a serious security flaw in its Commerce Cloud service, specifically affecting the Data Hub Adapter. This vulnerability, labeled CVE-2026-58231, carries a CVSS score of 10.0, indicating its severity. It stems from inadequate authorization checks and poor input validation, which could allow unauthenticated attackers to execute arbitrary code on affected systems. The flaw poses a significant risk as it could lead to unauthorized access and manipulation of data within the Commerce Cloud environment. SAP has released patches to address this issue, urging all users to implement them promptly to safeguard their systems.
A security researcher known as Chaotic Eclipse has released a proof-of-concept (PoC) for a serious zero-day vulnerability dubbed ShieldBreak, affecting Microsoft Defender for Windows. This vulnerability allows attackers to bypass the existing patch for CVE-2026-50656, also known as RoguePlanet, which has a CVSS score of 7.8, indicating a significant security risk. The flaw could enable unauthorized access with SYSTEM privileges, putting users' systems at risk. This discovery is crucial as it highlights the weaknesses in Microsoft Defender's security measures, potentially exposing millions of users to exploitation. Companies using Microsoft Defender should remain vigilant and apply any available patches while monitoring for any signs of exploitation.
Cisco has issued a patch for a serious vulnerability identified as CVE-2026-20349, which affects its Secure Firewall ASA and FTD devices. This flaw can be exploited remotely without the need for authentication, allowing attackers to launch Denial of Service (DoS) attacks against the devices. The ability to target these firewalls without prior access poses a significant risk to organizations that rely on Cisco's security solutions. Users of affected devices are urged to apply the updates provided by Cisco promptly to mitigate potential exploitation. The urgency of this patch reflects the growing trend of vulnerabilities being targeted in the wild, emphasizing the need for vigilant cybersecurity practices.
Microsoft's August Patch Tuesday updates address several vulnerabilities, with CVE-2026-62878 standing out due to its severity. This remote code execution vulnerability in Windows DNS Server has a high CVSS score of 9.8 and can be exploited without user interaction. This means attackers could potentially take control of affected systems easily, posing a significant risk to organizations relying on Windows DNS servers for their operations. It’s crucial for system administrators to prioritize applying this patch to protect their networks from potential exploitation. The updates are part of Microsoft's ongoing efforts to enhance security across its products, but this particular flaw underscores the importance of timely patch management.
The Hacker News
Microsoft has released its monthly security updates, addressing a total of 398 vulnerabilities, including a serious zero-day flaw that is currently being exploited in attacks. This particular vulnerability, tracked as CVE-2026-68820, affects a core Windows kernel driver responsible for network socket operations. Attackers who already have code running on a targeted machine can exploit this flaw to gain elevated privileges, potentially allowing them to execute commands with SYSTEM-level access. Given the active exploitation, users and organizations should prioritize applying the patch to mitigate the risk of unauthorized access. The patch is crucial for maintaining system security and preventing further attacks.
Zoom has addressed a serious vulnerability in its software that could allow a participant in a video meeting to execute malicious code on another user’s device via the annotation feature. This flaw, known as CVE-2026-53413, is categorized as a zero-click vulnerability, meaning it does not require any interaction from the victim to be exploited. Discovered by A Security, the issue is part of a broader update where Zoom patched a total of four vulnerabilities. The existence of such a flaw raises significant concerns about user safety and privacy during online meetings, as it could potentially lead to unauthorized access to sensitive information. Users are advised to update their Zoom applications to the latest version to protect themselves from possible exploitation.
Researchers have discovered a serious vulnerability in Microsoft SharePoint that allows unauthorized access to servers, including administrative functions, without a valid account. This flaw, known as CVE-2026-55040, has a CVSS score of 9.1, indicating its severity. It affects various versions of SharePoint, specifically SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Server 2016. The researchers utilized an AI agent to help identify this exploit chain, which raises concerns about the potential for widespread abuse. Organizations using these SharePoint versions should take immediate action to secure their systems to prevent unauthorized access.
A significant vulnerability has been identified in the Pulsetto Vagus Nerve Stimulator, affecting all versions of the device. This flaw allows attackers to exploit hidden commands via Bluetooth Low Energy (BLE) without any authentication or encryption. If successfully exploited, attackers could disable safety mechanisms or alter stimulation settings, posing serious risks to patients who rely on this medical device. Pulsetto has not collaborated with CISA to address the issue, leaving users vulnerable. It's crucial for users to contact Pulsetto directly for assistance and take defensive measures to protect their devices from potential exploitation.
The Cybersecurity and Infrastructure Security Agency (CISA) has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, indicating they are actively exploited in the wild. The vulnerabilities include a heap inspection flaw in Cisco Secure Firewall Adaptive Security Appliance (CVE-2026-20349), a use-after-free vulnerability in Microsoft Windows Ancillary Function Driver for WinSock (CVE-2026-68820), and a SQL injection vulnerability in Metabase (CVE-2026-72898). These vulnerabilities pose significant risks, especially to federal agencies, prompting CISA to emphasize the need for rapid remediation of high-risk vulnerabilities. While the Binding Operational Directive 26-04 applies specifically to federal agencies, CISA encourages all organizations to adopt similar risk-based approaches to vulnerability management. Organizations aware of other exploited vulnerabilities can submit them for potential inclusion in the KEV Catalog.
Researchers at Nanyang Technological University used AI agents to examine the software behind 4G and 5G phone networks and discovered 84 security flaws, with 83 confirmed by developers. Among these, 81 have been assigned CVE numbers, indicating their severity. One particularly concerning flaw could allow an attacker to hijack a subscriber’s data session, redirecting their internet traffic to themselves instead of to the intended destination. This poses significant risks to user privacy and data security. Alarmingly, 23 of the identified vulnerabilities currently lack fixes, raising concerns about the security of 5G networks as they continue to roll out globally.