home.social

#commandinjection — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #commandinjection, aggregated by home.social.

fetched live
  1. CISA flagged CVE-2026-22755, a command injection in VIVOTEK's upload_map.cgi allowing unauthenticated OS command execution. Dozens of camera models are affected, creating persistence and lateral movement risk in enterprise and critical infrastructure networks. #Vivotek #CommandInjection #NetworkSecurity

    cyberworldops.eu/en/vivotek-ca

  2. CISA flagged CVE-2026-22755, a command injection in VIVOTEK's upload_map.cgi allowing unauthenticated OS command execution. Dozens of camera models are affected, creating persistence and lateral movement risk in enterprise and critical infrastructure networks. #Vivotek #CommandInjection #NetworkSecurity

    cyberworldops.eu/en/vivotek-ca

  3. CISA flagged CVE-2026-22755, a command injection in VIVOTEK's upload_map.cgi allowing unauthenticated OS command execution. Dozens of camera models are affected, creating persistence and lateral movement risk in enterprise and critical infrastructure networks. #Vivotek #CommandInjection #NetworkSecurity

    cyberworldops.eu/en/vivotek-ca

  4. Advantech WISE-6610-NB (v1.2.1_20251110) faces a CRITICAL (CVSS 9.4) command injection flaw (CVE-2026-79698). Remote exploit is public. Patch by upgrading to 1.2.4_20260821. radar.offseq.com/threat/cve-20 #OffSeq #ICS #Vuln #CommandInjection

  5. Advantech WISE-6610-NB (v1.2.1_20251110) faces a CRITICAL (CVSS 9.4) command injection flaw (CVE-2026-79698). Remote exploit is public. Patch by upgrading to 1.2.4_20260821. radar.offseq.com/threat/cve-20 #OffSeq #ICS #Vuln #CommandInjection

  6. Advantech WISE-6610-NB (v1.2.1_20251110) faces a CRITICAL (CVSS 9.4) command injection flaw (CVE-2026-79698). Remote exploit is public. Patch by upgrading to 1.2.4_20260821. radar.offseq.com/threat/cve-20 #OffSeq #ICS #Vuln #CommandInjection

  7. 274 Zimbra Servers Hacked as CISA Patch Deadline Expires

    At least 274 internet-facing Zimbra instances confirmed compromised via CVE-2026-73570 as CISA three-day remediation deadline for federal agencies expires.

    pulseofnations.lol/274-zimbra-

    #CISA #CommandInjection #Cve202673570 #EmailSecurity #Patch #Vulnerability #Zimbra

  8. CISA Mandates Emergency Patching for Exploited Zimbra Flaw

    A critical Zimbra flaw, CVE-2026-73570, allows hackers to inject malicious code, and the CISA is mandating emergency patching to prevent devastating attacks - don't wait, get protected now!

    osintsights.com/cisa-mandates-

    #Cve202673570 #Zimbra #CommandInjection #RemoteCodeExecution #Snmp

  9. CVE-2026-77683: CRITICAL command injection in Comfast CF-N1-S (2.6.0.1) via /cgi-bin/mbox-config timestr parameter. Public exploit available, remote exploitation possible. Patch unavailable. radar.offseq.com/threat/cve-20 #OffSeq #CVE202677683 #IoTSecurity #CommandInjection

  10. CVE-2026-77683: CRITICAL command injection in Comfast CF-N1-S (2.6.0.1) via /cgi-bin/mbox-config timestr parameter. Public exploit available, remote exploitation possible. Patch unavailable. radar.offseq.com/threat/cve-20 #OffSeq #CVE202677683 #IoTSecurity #CommandInjection

  11. CVE-2026-77683: CRITICAL command injection in Comfast CF-N1-S (2.6.0.1) via /cgi-bin/mbox-config timestr parameter. Public exploit available, remote exploitation possible. Patch unavailable. radar.offseq.com/threat/cve-20 #OffSeq #CVE202677683 #IoTSecurity #CommandInjection

  12. A single public GitHub issue could trigger commands inside Snowflake’s GitHub Actions environment—and expose a Jira API token.

    Wiz confirmed the flaw during an authorized security test, while Snowflake says it found no signs of unauthorized access.

    How did an ordinary issue become a potential entry point, and what could the token actually reveal?

    en.hacks.gr/pos-i-wiz-anakalyp

    #Cybersecurity #CommandInjection #GitHubActions #Snowflake #CredentialExposure