Gray Hats
Gray Hats @the_yellow_fall ·
CISA warns of a critical authentication bypass flaw (CVE-2025-5095, CVSS 9.8) in ARC Solo devices, allowing attackers to change passwords and take full remote control without authentication. #CISAAlert #ARCSolo #AuthBypass #Cybersecurity securityonline.info/cve-2025-5095-…
CVE-2025-5095 (CVSS 9.8): Critical Flaw in ARC Solo Broadcasting Devices Allows Unauthenticated...

CISA warns of a critical authentication bypass flaw (CVE-2025-5095, CVSS 9.8) in ARC Solo devices, allowing attackers to change passwords and take full remote control without authentication.

From securityonline.info
1
276
Gray Hats
Gray Hats @the_yellow_fall ·
CISA issues an urgent warning about "ToolShell," a sophisticated exploit chain targeting SharePoint servers with multiple vulnerabilities to install webshells and steal crypto keys. #CISAAlert #ToolShell #SharePoint #ZeroDay #Cybersecurity securityonline.info/cisa-warns-of-…
CISA Warns of "ToolShell": Critical Exploit Chain Hits SharePoint Servers, Bypasses Authentication

CISA issues an urgent warning about "ToolShell," a sophisticated exploit chain targeting SharePoint servers with multiple vulnerabilities to install webshells and steal crypto keys.

From securityonline.info
211
Gray Hats
Gray Hats @the_yellow_fall ·
CISA warns of critical flaws in Tigo Energy's Cloud Connect Advanced devices, including hard-coded credentials and command injection, that could allow remote attackers to take full control of solar systems. #TigoEnergy #CISAAlert #SolarSecurity securityonline.info/cisa-alert-cri…
CISA Alert: Critical Flaws in Tigo Energy Solar Devices Allow Remote Takeover of Solar Systems

CISA warns of critical flaws in Tigo Energy's Cloud Connect Advanced devices, including hard-coded credentials and command injection, that could allow remote attackers to take full control of solar...

From securityonline.info
236
Gray Hats
Gray Hats @the_yellow_fall ·
CISA adds three D-Link vulnerabilities (CVE-2020-25078, -25079, -2022-40799) to its KEV Catalog, confirming active exploitation of EOL IP cameras. #CISAAlert #DLink #KEVCatalog #EOLDevices #Cybersecurity securityonline.info/cisa-adds-thre…
CISA Adds Three D-Link Flaws to KEV Catalog: EOL IP Cameras Under Active Exploitation

CISA adds three D-Link vulnerabilities (CVE-2020-25078, -25079, -2022-40799) to its KEV Catalog, confirming active exploitation of EOL IP cameras.

From securityonline.info
1
4
694