🪟 Windows TippsThe Gemini desktop app is now available for Windows(11.09.2026 um 17:06 Uhr)
•⚠️ Malware / Trojaner / VirenWindows 11 just dropped the tool ransomware abused, Microsoft says don’t restore WMIC(10.09.2026 um 20:11 Uhr)
•⚠️ Malware / Trojaner / VirenVorsicht: Android-Malware verschlüsselt Ihre Handys und nimmt heimlich Fotos auf(11.09.2026 um 09:35 Uhr)
•🕵️ SicherheitslückenMicrosoft geht endlich eines der nervigsten Probleme von Windows 11 an(11.09.2026 um 11:58 Uhr)
•💾 IT Security ToolsSysinternals Suite(11.09.2026 um 12:00 Uhr)
•🕵️ SicherheitslückenDefender 0-Day ShieldBreak (CVE-2026-69414) nicht sauber gepatcht - BornCity(11.09.2026 um 12:52 Uhr)
•🕵️ SicherheitslückenExploit-Kit Bluemoon: Chinesische Hacker bei Angriffen auf Windows-Nutzer erwischt(11.09.2026 um 13:34 Uhr)
•💾 IT Security ToolsSysinternals für Linux: Microsoft bringt 15 Diagnose-Tools auf Linux - ad-hoc-news.de(11.09.2026 um 22:16 Uhr)
•🕵️ SicherheitslückenCVE-2026-81782 | WP Docs Plugin up to 2.3.1 on WordPress cross site scripting (CNNVD-2026-92068413)(12.09.2026 um 06:24 Uhr)
•🕵️ SicherheitslückenRazer Lycosa.sys analysis: kernel memory disclosure and stack buffer overflow(10.09.2026 um 04:01 Uhr)
•🪟 Windows TippsThe Gemini desktop app is now available for Windows(11.09.2026 um 17:06 Uhr)
•⚠️ Malware / Trojaner / VirenWindows 11 just dropped the tool ransomware abused, Microsoft says don’t restore WMIC(10.09.2026 um 20:11 Uhr)
•⚠️ Malware / Trojaner / VirenVorsicht: Android-Malware verschlüsselt Ihre Handys und nimmt heimlich Fotos auf(11.09.2026 um 09:35 Uhr)
•🕵️ SicherheitslückenMicrosoft geht endlich eines der nervigsten Probleme von Windows 11 an(11.09.2026 um 11:58 Uhr)
•💾 IT Security ToolsSysinternals Suite(11.09.2026 um 12:00 Uhr)
•🕵️ SicherheitslückenDefender 0-Day ShieldBreak (CVE-2026-69414) nicht sauber gepatcht - BornCity(11.09.2026 um 12:52 Uhr)
•🕵️ SicherheitslückenExploit-Kit Bluemoon: Chinesische Hacker bei Angriffen auf Windows-Nutzer erwischt(11.09.2026 um 13:34 Uhr)
•💾 IT Security ToolsSysinternals für Linux: Microsoft bringt 15 Diagnose-Tools auf Linux - ad-hoc-news.de(11.09.2026 um 22:16 Uhr)
•🕵️ SicherheitslückenCVE-2026-81782 | WP Docs Plugin up to 2.3.1 on WordPress cross site scripting (CNNVD-2026-92068413)(12.09.2026 um 06:24 Uhr)
•🕵️ SicherheitslückenRazer Lycosa.sys analysis: kernel memory disclosure and stack buffer overflow(10.09.2026 um 04:01 Uhr)
•
1 Tag Serie
Cyber Threat & Vulnerability Dossier CVSS 7.5 HIGH (Heuristik) EPSS 20.8%
ANGRIPPSVEKTOR
💻 Lokal
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
RCE / Vollzugriff / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
Im CVE-Radar öffnen Within Sahi Pro 8.0.0, an attacker can send a specially crafted URL to include any victim files on the system via the script parameter on the Script_view page. This will result in file disclosure (i.e., being able to pull any file from the remote victim application). This can be used to steal and obtain sensitive config and other files. This can result in complete compromise of the application. The script parameter is vulnerable to directory traversal and both local and remote file inclusion. ↗ Original-Artikel auf cxsecurity.com lesen
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf cxsecurity.com.
Wie bewertest du diesen Beitrag?
1 Klick Feedback Teilen mit Netzwerk & Team:
Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf „ Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum 🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Tipp: Mit Pfeiltasten [ ← ] und [ → ] blättern
SOCIAL SHARE CARD GENERATOR