https://blindthoughts.com/gitea-docker-auth-bypass-exploited
#gitea #docker #authbypass #activelyexploited #selfhosted
https://blindthoughts.com/gitea-docker-auth-bypass-exploited
#gitea #docker #authbypass #activelyexploited #selfhosted
Bugs:
* https://github.com/uziii2208/CVE-2025-33073 - another way to pop AD
* https://github.com/watchtowrlabs/watchTowr-vs-Fortiweb-AuthBypass - FortiWoops
Exploitation:
* https://github.com/Mic92/strace-macos - strace your Apple
* […]
Bugs:
* https://github.com/uziii2208/CVE-2025-33073 - another way to pop AD
* https://github.com/watchtowrlabs/watchTowr-vs-Fortiweb-AuthBypass - FortiWoops
Exploitation:
* https://github.com/Mic92/strace-macos - strace your Apple
* […]
#authbypass #CrushFTP #cyberattack #attacks #CyberSecurity
#authbypass #CrushFTP #cyberattack #attacks #CyberSecurity
Cisco Secure FMC、CVE-2026-20079。未認証でWeb UIに細工HTTP→ルート相当。CVSS 10.0。CISA KEV、連邦の期限は今日。
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2
#Cisco #FMC #CVE
Cisco Secure FMC、CVE-2026-20079。未認証でWeb UIに細工HTTP→ルート相当。CVSS 10.0。CISA KEV、連邦の期限は今日。
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2
#Cisco #FMC #CVE
#Rclone #Vulnerability #CyberSecurity #AuthBypass #InfoSec
#Rclone #Vulnerability #CyberSecurity #AuthBypass #InfoSec
https://mjetechnologies.com
Full story:
https://www.bleepingcomputer.com/news/security/nearly-22-000-microsoft-exchange-servers-vulnerable-to-hijack-attacks/
#MicrosoftExchange #AuthBypass #EmailSecurity #PatchManagement #MJETechnologies #BusinessFirstTechnol
https://mjetechnologies.com
Full story:
https://www.bleepingcomputer.com/news/security/nearly-22-000-microsoft-exchange-servers-vulnerable-to-hijack-attacks/
#MicrosoftExchange #AuthBypass #EmailSecurity #PatchManagement #MJETechnologies #BusinessFirstTechnol
#Proxmox #ProxmoxVE #AuthBypass #PoC #PreAuth #Virtualization #InfoSec #ExploitedInTheWild
#Proxmox #ProxmoxVE #AuthBypass #PoC #PreAuth #Virtualization #InfoSec #ExploitedInTheWild
https://gist.github.com/sud0why/e73405057dd7414a8c221ef17e0d0059#file-cve-2026-56100-springblade-authbypass-en-md #PatchManagement #Vulnerability #CVE
https://gist.github.com/sud0why/e73405057dd7414a8c221ef17e0d0059#file-cve-2026-56100-springblade-authbypass-en-md #PatchManagement #Vulnerability #CVE
#IBM #PowerSystems #Firmware #CVE #RCE #AuthBypass #InfoSec #PatchNow
#IBM #PowerSystems #Firmware #CVE #RCE #AuthBypass #InfoSec #PatchNow
#NetScaler #Citrix #CVE202619490 #AuthBypass #InfoSec
#NetScaler #Citrix #CVE202619490 #AuthBypass #InfoSec
#TPLink #RouterSecurity #CVE #AuthBypass #CommandInjection #IoT #Cybersecurity
#TPLink #RouterSecurity #CVE #AuthBypass #CommandInjection #IoT #Cybersecurity
#Konnectivity #Kubernetes #CVE202616242 #CloudSecurity #ControlPlane #AuthBypass #InfoSec #PatchNow
#Konnectivity #Kubernetes #CVE202616242 #CloudSecurity #ControlPlane #AuthBypass #InfoSec #PatchNow
#CheckPoint #CVE202616232 #SmartConsole #AuthBypass #ExploitedInTheWild #InfoSec
#CheckPoint #CVE202616232 #SmartConsole #AuthBypass #ExploitedInTheWild #InfoSec
#RabbitMQ #AuthBypass #TLS #OAuth2 #InfoSec
#ApacheIoTDB #PathTraversal #AuthBypass #CVE #IoTSecurity #InfoSec
#ApacheIoTDB #PathTraversal #AuthBypass #CVE #IoTSecurity #InfoSec
#ApacheCamel #SSRF #AuthBypass #Deserialization #Keycloak #InfoSec
#ApacheCamel #SSRF #AuthBypass #Deserialization #Keycloak #InfoSec
#APISIX #ApacheAPISIX #JWT #AuthBypass #InfoSec
#APISIX #ApacheAPISIX #JWT #AuthBypass #InfoSec
https://blindthoughts.com/beyondtrust-critical-auth-bypass-remote-support-pra
#vulnerability #privilegedaccess #authbypass #patchnow #enterprisesecurity
https://blindthoughts.com/beyondtrust-critical-auth-bypass-remote-support-pra
#vulnerability #privilegedaccess #authbypass #patchnow #enterprisesecurity
Those of you still using #moveit might want to take note of this new Auth Bypass 😕🤦♂️
#authbypass
Those of you still using #moveit might want to take note of this new Auth Bypass 😕🤦♂️
#authbypass