Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.
Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://wiki.zimbra.com/wiki/Security_Center
https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories
https://moje.cert.pl/komunikaty/2026/145/aktywnie-wykorzystywana-podatnosc-w-zimbra-collaboration-suite/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-73570
https://nvd.nist.gov/vuln/detail/CVE-2026-73570
Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability
A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.
This vulnerability is due to insufficient error checking when processing HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability
CVE Numbers
Affected Product
Threat Description
This vulnerability is due to insufficient error checking when processing HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
Apache Tomcat Missing Encryption of Sensitive Data Vulnerability
Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor.
This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116.
Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue.
Apache Tomcat Missing Encryption of Sensitive Data Vulnerability
CVE Numbers
Affected Product
Threat Description
This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116.
Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue.
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://lists.apache.org/thread/9510k5p5zdvt9pkkgtyp85mvwxo2qrly
https://www.vicarius.io/vsociety/posts/cve-2026-34486-detection-script-rce-on-apache-tomcat
https://www.vicarius.io/vsociety/posts/cve-2026-34486-mitigation-script-rce-on-apache-tomcat
https://access.redhat.com/errata/RHSA-2026:36787
https://access.redhat.com/errata/RHSA-2026:36788
https://access.redhat.com/errata/RHSA-2026:36789
https://access.redhat.com/errata/RHSA-2026:36790
https://access.redhat.com/errata/RHSA-2026:36876
https://access.redhat.com/errata/RHSA-2026:36877
https://access.redhat.com/errata/RHSA-2026:36878
https://access.redhat.com/errata/RHSA-2026:36879
https://access.redhat.com/errata/RHSA-2026:37136
https://access.redhat.com/errata/RHSA-2026:37137
https://access.redhat.com/errata/RHSA-2026:38505
https://access.redhat.com/errata/RHSA-2026:39188
https://access.redhat.com/errata/RHSA-2026:39189
https://access.redhat.com/security/cve/CVE-2026-34486
https://bugzilla.redhat.com/show_bug.cgi?id=2457027
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-34486.json
https://socradar.io/blog/snowlight-government-chinese-campaign/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-34486
https://nvd.nist.gov/vuln/detail/CVE-2026-34486
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability
Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass.
This issue affects N-central: through 2026.1.
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability
CVE Numbers
Affected Product
Threat Description
This issue affects N-central: through 2026.1.
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability
An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://documentation.n-able.com/N-central/Release_Notes/GA/Content/N-central_2026.3_HF1_Release_Notes.htm
https://www.cve.org/CVERecord?id=CVE-2026-18556
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-18577
https://www.n-able.com/blog/n-central-security-update-august-2-2026
https://nvd.nist.gov/vuln/detail/CVE-2026-18577
Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability
A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within the impacted systems.
This vulnerability is due to the presence of static user credentials for a low-privileged account. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow the attacker to log in to the affected system and access sensitive data as the low-privileged user.
Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.
Cisco has assigned this security advisory a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that this vulnerability can be used with other Cisco Secure FMC Software vulnerabilities to elevate privileges.
Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability
CVE Numbers
Affected Product
Threat Description
This vulnerability is due to the presence of static user credentials for a low-privileged account. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow the attacker to log in to the affected system and access sensitive data as the low-privileged user.
Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.
Cisco has assigned this security advisory a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that this vulnerability can be used with other Cisco Secure FMC Software vulnerabilities to elevate privileges.
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1, FortiOS 7.4.0 through 7.4.6, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions may allow a remote unauthenticated attacker to bypass the patch developed for the symbolic link persistency mechanism observed in some post-exploit cases, via crafted HTTP requests. An attacker would need first to have compromised the product via another vulnerability, at filesystem level.
Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
WordPress Core SQL Injection Vulnerability
WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter of WP_Query, which could allow SQL Injection when a plugin or theme passes untrusted input to the parameter.
WordPress Core SQL Injection Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
DD-WRT Stack-Based Buffer Overflow Vulnerability
An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality allows an unauthenticated remote attacker to send a request that would overflow an internal fixed buffer. Exploitation requires the DD-WRT user to enable UPnP (which is off by default, and only listens on internal interfaces by default). This occurs in ssdp_msearch (reachable by an M-SEARCH request).
DD-WRT Stack-Based Buffer Overflow Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://svn.dd-wrt.com/changeset/45724
https://www.bleepingcomputer.com/news/security/c0xmo-botnet-spreads-via-dd-wrt-router-flaw-kills-rival-malware/
https://www.fortinet.com/blog/threat-research/inside-cross-platform-propagation-of-new-gafgyt-variant-c0xmo
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-27137
https://nvd.nist.gov/vuln/detail/CVE-2021-27137
