[email protected]   |   +963 xx xx xx
Professional ICT & Telecommunication consultancy

Security Alerts

Stay informed about newly disclosed vulnerabilities, affected products, severity levels, and recommended mitigation actions.

CRITICAL

HIGH

MEDIUM

LOW

Latest Security Alerts

Review the latest cybersecurity vulnerabilities, affected systems, risk levels, and recommended mitigation measures.

Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability

Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, ...
/ Critical, Security Alerts

Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability

A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due ...
/ High, Security Alerts

TrueConf Server Code Injection Vulnerability

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and ...
/ Critical, Security Alerts

TrueConf Server Missing Authentication for Critical Function Vulnerability

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and ...
/ Critical, Security Alerts

MLflow Server-Side Request Forgery Vulnerability

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint ...
/ Critical, Security Alerts

Apple macOS Improper Authentication Vulnerability

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker ...
/ Critical, Security Alerts

Broadcom VMware vCenter Path Traversal Vulnerability

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code ...
/ Critical, Security Alerts

Microsoft SharePoint Weak Authentication Vulnerability

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network. MANARTECH SECURITY ALERT Microsoft SharePoint Weak Authentication ...
/ Critical, Security Alerts

Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability

Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network. MANARTECH SECURITY ALERT Microsoft Internet Key Exchange (IKE) Service ...
/ Critical, Security Alerts