Skip to content
inionline.net
  • Managed IT Support Services
  • Contact Us
inionline.net
  • Blog

    CISA Warns of CentreStack’s Hard-Coded MachineKey Vulnerability Enabling RCE Attacks

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a critical security flaw impacting Gladinet CentreStack to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerability, tracked as CVE-2025-30406 (CVSS score: 9.0), concerns a case of a hard-coded cryptographic key that could be abused to achieve…

    Read More CISA Warns of CentreStack’s Hard-Coded MachineKey Vulnerability Enabling RCE AttacksContinue

  • Blog

    Microsoft Patches 126 Flaws Including Actively Exploited Windows CLFS Vulnerability

    Microsoft has released security fixes to address a massive set of 126 flaws affecting its software products, including one vulnerability that it said has been actively exploited in the wild. Of the 126 vulnerabilities, 11 are rated Critical, 112 are rated Important, and two are rated Low in severity. Forty-nine of these vulnerabilities are classified…

    Read More Microsoft Patches 126 Flaws Including Actively Exploited Windows CLFS VulnerabilityContinue

  • Blog

    CrushFTP Authentication Bypass

    What is the Vulnerability?FortiGuard Labs has observed in-the-wild attack attempts targeting CVE-2025-31161, an authentication bypass vulnerability in CrushFTP managed file transfer (MFT) software. Successful exploitation may grant attackers administrative access to the application, posing a serious threat to enterprise environments.The vulnerability is remotely exploitable, and a proof-of-concept (PoC) exploit is now publicly available. This increases…

    Read More CrushFTP Authentication BypassContinue

  • Blog

    Adobe Patches 11 Critical ColdFusion Flaws Amid 30 Total Vulnerabilities Discovered

    Adobe has released security updates to fix a fresh set of security flaws, including multiple critical-severity bugs in ColdFusion versions 2025, 2023 and 2021 that could result in arbitrary file read and code execution. Of the 30 flaws in the product, 11 are rated Critical in severity – CVE-2025-24446 (CVSS score: 9.1) – An improper input…

    Read More Adobe Patches 11 Critical ColdFusion Flaws Amid 30 Total Vulnerabilities DiscoveredContinue

  • Blog

    Microsoft Drops Another Massive Patch Update

    A threat actor has already exploited one of the flaws in a ransomware campaign with victims in the US and other countries.

    Read More Microsoft Drops Another Massive Patch UpdateContinue

  • Blog

    Industry Asks for Clarity on Proposed HIPAA Cybersecurity Rules

    Healthcare and IT security practitioners worry some of the proposed amendments are not practical for a sector that lacks resources and often uses legacy equipment.

    Read More Industry Asks for Clarity on Proposed HIPAA Cybersecurity RulesContinue

  • Blog

    Aurascape Brings Visibility, Security Controls to Manage AI Applications

    New cybersecurity startup Aurascape emerged from stealth today with an AI-native security platform to automate security policies for AI applications.

    Read More Aurascape Brings Visibility, Security Controls to Manage AI ApplicationsContinue

  • Blog

    UK Orgs Pull Back Digital Projects With Looming Threat of Cyberwarfare

    Artificial intelligence poses a significant concern when it comes to nation-state cyberthreats and AI’s ability to supercharge attacks.

    Read More UK Orgs Pull Back Digital Projects With Looming Threat of CyberwarfareContinue

  • Blog

    Fortinet Urges FortiSwitch Upgrades to Patch Critical Admin Password Change Flaw

    Fortinet has released security updates to address a critical security flaw impacting FortiSwitch that could permit an attacker to make unauthorized password changes. The vulnerability, tracked as CVE-2024-48887, carries a CVSS score of 9.3 out of a maximum of 10.0. “An unverified password change vulnerability [CWE-620] in FortiSwitch GUI may allow a remote unauthenticated attacker…

    Read More Fortinet Urges FortiSwitch Upgrades to Patch Critical Admin Password Change FlawContinue

  • Blog

    Amazon EC2 SSM Agent Flaw Patched After Privilege Escalation via Path Traversal

    Cybersecurity researchers have disclosed details of a now-patched security flaw in the Amazon EC2 Simple Systems Manager (SSM) Agent that, if successfully exploited, could permit an attacker to achieve privilege escalation and code execution. The vulnerability could permit an attacker to create directories in unintended locations on the filesystem, execute arbitrary scripts with root privileges,

    Read More Amazon EC2 SSM Agent Flaw Patched After Privilege Escalation via Path TraversalContinue

Page navigation

Previous PagePrevious 1 … 326 327 328 329 330 … 410 Next PageNext
Facebook
Privacy Policy
Background by Vecteezy

Web Design 2024 SekuritasIT

Veteran Owned and Operated

Scroll to top
  • Managed IT Support Services
  • Contact Us