⚠️ Malware / Trojaner / VirenYou don't want this Sleepwalker backdoor on your Windows machine(24.08.2026 um 23:39 Uhr)
⚠️ Malware / Trojaner / VirenCrooks push Mac malware through fake OpenAI Codex ads(25.08.2026 um 11:15 Uhr)
🔧 AI Nachrichten OpenAI explains how its naughty AI agents attacked Hugging Face(27.08.2026 um 01:45 Uhr)
⚠️ Malware / Trojaner / VirenATF responds to 'major' cybersecurity incident after ransomware gang's claims(27.08.2026 um 17:25 Uhr)
🔧 AI Nachrichten Industry that built the problem offers to sell you the solution(28.08.2026 um 13:01 Uhr)
🕵️ SicherheitslückenCISA: Most exploited vulnerabilities should have been eradicated decades ago(28.08.2026 um 13:29 Uhr)
⚠️ Malware / Trojaner / VirenAnthropic cracks down on hijacked user accounts mining AI tokens(31.08.2026 um 18:03 Uhr)
⚠️ Malware / Trojaner / VirenYou don't want this Sleepwalker backdoor on your Windows machine(24.08.2026 um 23:39 Uhr)
⚠️ Malware / Trojaner / VirenCrooks push Mac malware through fake OpenAI Codex ads(25.08.2026 um 11:15 Uhr)
🔧 AI Nachrichten OpenAI explains how its naughty AI agents attacked Hugging Face(27.08.2026 um 01:45 Uhr)
⚠️ Malware / Trojaner / VirenATF responds to 'major' cybersecurity incident after ransomware gang's claims(27.08.2026 um 17:25 Uhr)
🔧 AI Nachrichten Industry that built the problem offers to sell you the solution(28.08.2026 um 13:01 Uhr)
🕵️ SicherheitslückenCISA: Most exploited vulnerabilities should have been eradicated decades ago(28.08.2026 um 13:29 Uhr)
⚠️ Malware / Trojaner / VirenAnthropic cracks down on hijacked user accounts mining AI tokens(31.08.2026 um 18:03 Uhr)

10 🕛 kürzlich 1 Min Lesezeit CVE-2026-72599
0

CVE-2026-72599 | e107 up to 2.4.0 ID sql injection (EUVD-2026-56038)

Cyber Threat & Vulnerability Dossier CVSS 8.2 HIGH (Heuristik) EPSS 86.5%
ANGRIPPSVEKTOR
🌐 Netzwerk (Remote)
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
🗄️ Daten-Exfiltration (SQLi) / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-89: SQL Injection
Handlungsempfehlung: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
Im CVE-Radar öffnen
↗ Quelle (VulDB Updates)
🔬 IoC Intelligence (1 Indikatoren erkannt)
CVE-2026-72599
🗣️ Stimme:

A vulnerability classified as critical was found in e107 up to 2.4.0. This affects an unknown function. Executing a manipulation of the argument ID can lead to sql injection. This vulnerability is handled as CVE-2026-72599. The attack can be executed remotely. There is not any exploit available.

Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf vuldb.com.
↗ Original-Artikel auf vuldb.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 43%
🟡 In Evaluierung 33%
🟢 Keine Auswirkung 14%
Spannende Innovation 10%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
2 Quellen
OpenAI launches GPT-6 Astra
1 Quelle
AWS Adds GPT-5.6 Terra and Luna to Amazon Bedrock in India
1 Quelle
ChatGPT, Claude, Grok, and Gemini Hit by Rare Overlapping Outages