// Category Archive

System Category: خوادم وبنية تحتية شبكية

⏱️ 1 min read

F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-94127 targeting F5 BIG-IP APM. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: F5 BIG-IP APM contains a heap-based buffer overflow vulnerability when access policy and an OAuth profile are configured […]

Read More Tech Mentor
⏱️ 2 min read

Arista VeloCloud Orchestrator Improper Input Validation Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-93952 targeting Arista VeloCloud Orchestrator. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: Arista VeloCloud Orchestrator (VCO) on-prem contains an improper input validation vulnerability that may allow a remote attacker to […]

Read More Tech Mentor
⏱️ 1 min read

Check Point Multiple Products Path Traversal Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-93616 targeting Check Point Multiple Products. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: Check Point Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server, and SmartEvent contain […]

Read More Tech Mentor
⏱️ 1 min read

Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-76460 targeting Cisco Identity Services Engine. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) contain an incorrect use of […]

Read More Tech Mentor
⏱️ 1 min read

Cisco Secure Email Gateway SQL Injection Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-76461 targeting Cisco Secure Email Gateway. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: Cisco AsyncOS software for Cisco Secure Email Gateway (SEG) contains a SQL injection vulnerability that could allow […]

Read More Tech Mentor
⏱️ 1 min read

GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-85706 targeting GitLab Community Edition and Enterprise Edition. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: GitLab Community Edition and Enterprise Edition contains a path traversal vulnerability that allows an unauthenticated […]

Read More Tech Mentor
⏱️ 1 min read

Check Point Multiple Products Improper Certificate Validation Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-85102 targeting Check Point Multiple Products. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access […]

Read More Tech Mentor
⏱️ 1 min read

ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-84869 targeting ConnectWise ScreenConnect. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: ConnectWise ScreenConnect contains both an improper privilege management and missing authorization vulnerability that may allow an attacker to transfer […]

Read More Tech Mentor
⏱️ 1 min read

MikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-86060 targeting MikroTik RouterOS. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: MikroTik RouterOS contains an improper neutralization of argument delimiters in a command vulnerability which allows an attacker to change […]

Read More Tech Mentor
⏱️ 1 min read

MikroTik RouterOS Missing Authentication for Critical Function Vulnerability

Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2026-67277 targeting MikroTik RouterOS. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: MikroTik RouterOS contains a missing authentication for critical function vulnerability which allows kernel memory disclosure and denial of service […]

Read More Tech Mentor