#critical-vulnerability

[ follow ]
fromSecurityWeek
1 week ago

Juniper Networks PTX Routers Affected by Critical Vulnerability

The On-Box Anomaly detection framework should only be reachable by other internal processes over the internal routing instance, but not over an externally exposed port. With the ability to access and manipulate the service to execute code as root a remote attacker can take complete control of the device.
Information security
Information security
fromTechCrunch
2 months ago

Cisco says Chinese hackers are exploiting its customers with a new zero-day | TechCrunch

Critical Cisco AsyncOS vulnerability enables full takeover of exposed devices; no patches exist and wiping/rebuilding software is the only current mitigation.
fromTechzine Global
3 months ago

Apache warns of critical vulnerability in Tika toolkit

According to Apache, a related and more serious bug, registered as CVE-2025-66516, has now been identified in a core component of Tika. The earlier problem was visible through the PDF parser module, but the underlying cause was in the central tiki-core component. As a result, users remained vulnerable if they only updated the parser and not the core library. The problem has only been completely resolved as of version 3.2.2 of tika-core.
Information security
[ Load more ]