🪟 Windows ServerVirtualBox 7.2.18 als Wartungsupdate erschienen - Korrigiert BSOD auf ARM mit Windows ...(15.09.2026 um 15:50 Uhr)
•🪟 Windows ServerWSL 2.9.12 (Windows Subsystem for Linux) erschienen - Deskmodder.de(15.09.2026 um 17:05 Uhr)
•🪟 Windows ServerMicrosoft veröffentlicht Notfall-Update KB5129195 für Windows 11 - Notebookcheck News(15.09.2026 um 20:00 Uhr)
•🕵️ SicherheitslückenCVE-2026-77822 | IBM ContextForge MCP Gateway up to 1.0.8 server-side request forgery(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2026-84933 | undici prior 7.29.1/8.10.2 Cache Interceptor information disclosure (EUVD-2026-71518)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2019-7105 | Adobe XD up to 16.0 path traversal (APSB19-22)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2026-71362 | Adobe Commerce/Commerce B2B/Magento Open Source improper authorization(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2025-15267 | Bold Page Builder Plugin up to 5.5.7 on WordPress bt_bb_accordion_item cross site scripting (EUVD-2025-206898)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2019-7106 | Adobe XD up to 16.0 path traversal (APSB19-22)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2024-44960 | Linux Kernel up to 6.10.4 gadget null pointer dereference (Nessus ID 208245 / WID-SEC-2024-2057)(15.09.2026 um 19:16 Uhr)
•🪟 Windows ServerVirtualBox 7.2.18 als Wartungsupdate erschienen - Korrigiert BSOD auf ARM mit Windows ...(15.09.2026 um 15:50 Uhr)
•🪟 Windows ServerWSL 2.9.12 (Windows Subsystem for Linux) erschienen - Deskmodder.de(15.09.2026 um 17:05 Uhr)
•🪟 Windows ServerMicrosoft veröffentlicht Notfall-Update KB5129195 für Windows 11 - Notebookcheck News(15.09.2026 um 20:00 Uhr)
•🕵️ SicherheitslückenCVE-2026-77822 | IBM ContextForge MCP Gateway up to 1.0.8 server-side request forgery(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2026-84933 | undici prior 7.29.1/8.10.2 Cache Interceptor information disclosure (EUVD-2026-71518)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2019-7105 | Adobe XD up to 16.0 path traversal (APSB19-22)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2026-71362 | Adobe Commerce/Commerce B2B/Magento Open Source improper authorization(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2025-15267 | Bold Page Builder Plugin up to 5.5.7 on WordPress bt_bb_accordion_item cross site scripting (EUVD-2025-206898)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2019-7106 | Adobe XD up to 16.0 path traversal (APSB19-22)(15.09.2026 um 19:04 Uhr)
•🕵️ SicherheitslückenCVE-2024-44960 | Linux Kernel up to 6.10.4 gadget null pointer dereference (Nessus ID 208245 / WID-SEC-2024-2057)(15.09.2026 um 19:16 Uhr)
•
1 Tag Serie
💾 IT Security Tools 🕛 vor 6 Jahren 1 Min Lesezeit SECURITY-FEED
A FortiSIEM collector connects to a Supervisor/Worker over HTTPS TLS (443/TCP) to register itself as well as relaying event data such as syslog, netflow, SNMP, etc. When the Collector (the client) connects to the Supervisor/Worker (the server), the client does not validate the server-provided certificate against its root-CA store. Since the client does no server certificate validation, this means any certificate presented to the client will be considered valid and the connection will succeed. If an attacker spoofs a Worker/Supervisor using an ARP or DNS poisoning attack (or any other MITM attack), the Collector will blindly connect to the attacker's HTTPS TLS server. It will disclose the authentication password used along with any data being relayed. Versions 5.0 and 5.2.1 have been tested and are affected. ↗ Original-Artikel auf packetstormsecurity.com lesen
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf packetstormsecurity.com.
Wie bewertest du diesen Beitrag?
1 Klick Feedback Teilen mit Netzwerk & Team:
Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf „ Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum 🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Tipp: Mit Pfeiltasten [ ← ] und [ → ] blättern
SOCIAL SHARE CARD GENERATOR