News | HiddenRefer

Navigation

  • Home
  • Cloud
  • Crime
  • Cyber
  • Data Breaches
  • Drug Raids
  • Privacy
  • Security
Subscribe
News | HiddenRefer

The Best Curated Freebies in One Place

0
0
0
0
News | HiddenRefer
  • Home
  • Cloud
  • Crime
  • Cyber
  • Data Breaches
  • Drug Raids
  • Privacy
  • Security
  • Security

Watch Out! Hackers Begin Exploiting Recent Zyxel Firewalls RCE Vulnerability

  • May 17, 2022
  • hiddenrefer
Zyxel Firewalls RCE Vulnerability
Total
0
Shares
0
0
0
Advertisements

The U.S. Cybersecurity and Infrastructure Security Agency on Monday added two security flaws, including the recently disclosed remote code execution bug affecting Zyxel firewalls, to its Known Exploited Vulnerabilities Catalog, citing evidence of active exploitation.

Tracked as CVE-2022-30525, the vulnerability is rated 9.8 for severity and relates to a command injection flaw in select versions of the Zyxel firewall that could enable an unauthenticated adversary to execute arbitrary commands on the underlying operating system.

Impacted devices include –

  • USG FLEX 100, 100W, 200, 500, 700
  • USG20-VPN, USG20W-VPN
  • ATP 100, 200, 500, 700, 800, and
  • VPN series

The issue, for which patches were released by the Taiwanese firm in late April (ZLD V5.30), became public knowledge on May 12 following a coordinated disclosure process with Rapid7.

Merely a day later, the Shadowserver Foundation said it began detecting exploitation attempts, with most of the vulnerable appliances located in France, Italy, the U.S., Switzerland, and Russia.

CyberSecurity

Also added by CISA to the catalog is CVE-2022-22947, another code injection vulnerability in Spring Cloud Gateway that could be exploited to allow arbitrary remote execution on a remote host by means of a specially crafted request.

The vulnerability is rated 10 out of 10 on the CVSS vulnerability scoring system and has since been addressed in Spring Cloud Gateway versions 3.1.1 or later and 3.0.7 or later as of March 2022.

Featured image source: z3r00t.



Total
0
Shares
Share 0
Tweet 0
Pin it 0
hiddenrefer

Previous Article
California law requiring women on corporate boards struck down
  • Crime News

California law requiring women on corporate boards struck down

  • May 17, 2022
  • hiddenrefer
View & Download
Next Article
Gunman lurked in church for hours before opening fire
  • Crime News

Gunman lurked in church for hours before opening fire

  • May 17, 2022
  • hiddenrefer
View & Download
You May Also Like
Learn NIST Inside Out With 21 Hours of Training @ 86% OFF
View & Download
  • Security

Learn NIST Inside Out With 21 Hours of Training @ 86% OFF

  • hiddenrefer
  • June 25, 2022
ToddyCat claws at Asian governments
View & Download
  • Security

ToddyCat claws at Asian governments

  • hiddenrefer
  • June 24, 2022
Mitel VoIP Zero-Day
View & Download
  • Security

Hackers Exploit Mitel VoIP Zero-Day in Likely Ransomware Attack

  • hiddenrefer
  • June 24, 2022
Hacking Smartphones with Hermit Spyware
View & Download
  • Security

Google Says ISPs Helped Attackers Infect Targeted Smartphones with Hermit Spyware

  • hiddenrefer
  • June 24, 2022
Backdoored Python Libraries
View & Download
  • Security

Multiple Backdoored Python Libraries Caught Stealing AWS Secrets and Keys

  • hiddenrefer
  • June 24, 2022
Ransomware as a Decoy for Cyber Espionage Attacks
View & Download
  • Security

State-Backed Hackers Using Ransomware as a Decoy for Cyber Espionage Attacks

  • hiddenrefer
  • June 24, 2022
New 'Quantum' Builder Lets Attackers Easily Create Malicious Windows Shortcuts
View & Download
  • Security

New ‘Quantum’ Builder Lets Attackers Easily Create Malicious Windows Shortcuts

  • hiddenrefer
  • June 24, 2022
Log4Shell Still Being Exploited to Hack VMWare Servers to Exfiltrate Sensitive Data
View & Download
  • Security

Log4Shell Still Being Exploited to Hack VMWare Servers to Exfiltrate Sensitive Data

  • hiddenrefer
  • June 24, 2022
  • NYPD reports slashed in the face on subway near Wall Street station
    NYPD reports slashed in the face on subway near Wall Street station
    • June 26, 2022
  • Man pushed onto NYC subway tracks after trying to break up fight
    Man pushed onto NYC subway tracks after trying to break up fight
    • June 26, 2022
  • Fire in Jurupa Valley prompts mandatory evacuations
    Fire in Jurupa Valley prompts mandatory evacuations
    • June 26, 2022
  • Man injured in shooting on BART train in Oakland
    Man injured in shooting on BART train in Oakland
    • June 26, 2022
  • Bodies of victims in NYC triple homicide decomposed
    Bodies of victims in NYC triple homicide decomposed
    • June 25, 2022

Featured Categories

Cloud Security
248 Posts
View Posts
Crime News
3833 Posts
View Posts
Cybersecurity
234 Posts
View Posts
Data Breaches
82 Posts
View Posts
Drug Raids
137 Posts
View Posts
Privacy
101 Posts
View Posts
Security
1180 Posts
View Posts
about
Navigation
  • Home
  • Cloud
  • Crime
  • Cyber
  • Data Breaches
  • Drug Raids
  • Privacy
  • Security
Featured
  • NYPD reports slashed in the face on subway near Wall Street station
    NYPD reports slashed in the face on subway near Wall Street station
    • June 26, 2022
  • Man pushed onto NYC subway tracks after trying to break up fight
    Man pushed onto NYC subway tracks after trying to break up fight
    • June 26, 2022
  • Fire in Jurupa Valley prompts mandatory evacuations
    Fire in Jurupa Valley prompts mandatory evacuations
    • June 26, 2022
  • Man injured in shooting on BART train in Oakland
    Man injured in shooting on BART train in Oakland
    • June 26, 2022
  • Bodies of victims in NYC triple homicide decomposed
    Bodies of victims in NYC triple homicide decomposed
    • June 25, 2022
News | HiddenRefer
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Input your search keywords and press Enter.