SEKurity GmbH Logo
Home / Tags / InSEKurity

#InSEKurity

8 Articles tagged

[*] Filtering articles by tag: InSEKurity
[+] Matching entries: 8
root@sekurity:~# ls -la /tags/insekurity/* _

CVE Research
sekurity-team

InSEKurity of the Week (CW16/2026): Windows IKE Extensions RCE (CVE-2026-33824)

Critical pre-auth double free in the Windows IKE Service Extensions (IKEEXT.dll) lets remote attackers reach SYSTEM over UDP/500 and UDP/4500 -- wormable, public PoC already online

01
CVE Research
sekurity-team

InSEKurity of the Week (CW15/2026): Cisco IMC Authentication Bypass (CVE-2026-20093)

Critical pre-authentication flaw in Cisco Integrated Management Controller lets remote attackers reset any admin password and seize full out-of-band control of UCS servers

02
CVE Research
sekurity-team

InSEKurity of the Week (CW14/2026): FortiClient EMS Unauthenticated Remote Code Execution (CVE-2026-35616)

Critical improper access control vulnerability in Fortinet FortiClient EMS actively exploited as zero-day - Unauthenticated API bypass leads to remote code execution

03
CVE Research
sekurity-team

InSEKurity of the Week (CW13/2026): Cisco Catalyst SD-WAN Manager Authentication Bypass (CVE-2026-20129)

Critical authentication bypass vulnerability in Cisco Catalyst SD-WAN Manager actively exploited - Unauthenticated access with netadmin privileges possible

04
CVE Research
sekurity-team

InSEKurity of the Week (CW07/2026): Windows Shell SmartScreen Bypass Zero-Day (CVE-2026-21510)

Critical zero-day vulnerability in Windows Shell allows attackers to bypass SmartScreen and Mark of the Web protections through a single malicious click

05
CVE Research
sekurity-team

InSEKurity of the Week (CW06/2026): OpenClaw AI Agent 1-Click RCE (CVE-2026-25253)

Critical vulnerability in OpenClaw AI Agent enables Remote Code Execution with just one click - Authentication token exfiltration through manipulated URLs

06
CVE Research
sekurity-team

InSEKurity of the Week (CW04/2026): Cisco Unified Communications Manager Zero-Day (CVE-2026-20045)

Critical zero-day vulnerability in Cisco Unified Communications Manager and Webex actively exploited - Root access via code injection possible

07
CVE Research
sekurity-team

InSEKurity of the Week (CW03/2026): Node.js node-tar Path Traversal (CVE-2026-23745)

Critical path traversal vulnerability in node-tar allows arbitrary file overwrite through manipulated hardlinks and symlinks in TAR archives

08

root@sekurity:~# echo "End of results for tag: InSEKurity"
End of results for tag: InSEKurity
root@sekurity:~# _