Wednesday , June 24 2026

Recent Posts

ALERT
Vulnerability in Palo Alto’s ADNS allow attacker reboot firewall leading maintenance mode 

GlobalProtect

Palo Alto Networks released a security advisory about a DoS vulnerability in its PAN-OS software, particularly in the Advanced DNS Security feature. The vulnerability, identified as CVE-2026-0229, has a CVSSv4 score of 6.6 and may allow unauthenticated attackers to cause firewalls to restart repeatedly, leading to maintenance mode. The vulnerability …

Read More »

CISA Flags Microsoft Configuration Manager SQL Injection flaw Exploited in Attacks

Microsoft Configuration Manager

CISA warned U.S. government agencies on Thursday to protect their systems from a critical Microsoft Configuration Manager vulnerability that was fixed in October 2024 and is currently being exploited. Microsoft Configuration Manager is a tool for IT management of many Windows servers and workstations. CVE-2024-43468 is an SQL injection vulnerability discovered …

Read More »

Zimbra Patches for XSS, XXE, & LDAP Vulnerabilities

Zimbra

Zimbra launched version 10.1.16 addressing serious vulnerabilities like cross-site scripting (XSS), XML external entity (XXE), and LDAP injection. This urgent update, marked as high risk for patch severity and deployment, requires admins to upgrade right away to protect against exploits. Attackers can use unsanitized inputs to insert harmful scripts, which …

Read More »