News

@System Tek_UK
systemtek. co. uk > 2026 > 05 > litespeed-user-end-cpanel-plugin-privilege-escalation-vulnerability-cve-2026-48172

Lite Speed User-End c Panel Plugin privilege escalation vulnerability (CVE-2026-48172)

7+ hour, 5+ min ago  (137+ words) CVE number " CVE-2026-48172 Lite Speed User-End c Panel Plugin before 2. 4. 5 allows privilege escalation (possibly to root), as exploited in the wild in May 2026. If you get no output, you have not been hit with exploitation of the vulnerability. If there…...

@System Tek_UK
systemtek. co. uk > 2026 > 05 > cisco-secure-workload-unauthorized-api-access-vulnerability-cve-2026-20223

Cisco Secure Workload Unauthorized API Access Vulnerability (CVE-2026-20223)

5+ hour, 34+ min ago  (172+ words) CVE number " CVE-2026-20223 A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to access site resources with the privileges of the'Site Admin'role. This vulnerability is due to insufficient validation…...

@System Tek_UK
systemtek. co. uk > 2026 > 05 > ivanti-endpoint-manager-remotecontrolauth-exposed-dangerous-method-information-disclosure-vulnerability-cve-2026-8109

Ivanti Endpoint Manager Remote Control Auth Exposed Dangerous Method Information Disclosure Vulnerability (CVE-2026-8109)

1+ week, 2+ day ago  (45+ words) CVE number = CVE-2026-8109 The specific flaw exists within the Remote Control Auth module. The issue results from an exposed dangerous method. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Ivanti has issued an update…...

Symbols: cwe-78
@System Tek_UK
systemtek. co. uk > 2026 > 05 > critical-vulnerability-in-palo-alto-pan-os-cve-2026-0300

Critical Vulnerability in Palo Alto PAN-OS (CVE-2026-0300)

2+ week, 1+ day ago  (124+ words) CVE number = CVE-2026-0300 Palo Alto has published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges. Palo Alto observed limited exploitation of this vulnerability. It is strongly…...

Symbols: cwe-78
@System Tek_UK
systemtek. co. uk > 2026 > 05 > cisco-identity-services-engine-stored-cross-site-scripting-vulnerabilities

Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities

2+ week, 1+ day ago  (164+ words) At the time of publication, these vulnerabilities affected Cisco ISE, regardless of device configuration. Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against…...

@System Tek_UK
systemtek. co. uk > 2026 > 05 > cisco-enterprise-chat-and-email-lite-agent-file-upload-vulnerability-cve-2026-20172

Cisco Enterprise Chat and Email Lite Agent File Upload Vulnerability (CVE-2026-20172)

2+ week, 1+ day ago  (178+ words) CVE number = CVE-2026-20172 At the time of publication, this vulnerability affected Cisco ECE if the Lite Agent was enabled. A vulnerability in the Lite Agent feature of Cisco Enterprise Chat and Email (ECE) could allow an authenticated, remote attacker to…...

Symbols: cwe-95
@System Tek_UK
systemtek. co. uk > tag > password-buffer-overflow-vulnerability

Password Buffer Overflow Vulnerability " System Tek " Technology news and information

2+ week, 4+ day ago  (28+ words) Totolink N300 RH Password buffer overflow vulnerability (CVE-2026-7747)systemtek. co. uk " A vulnerability, which was classified as critical, has been found in Totolink N300 RH 3. 2. 4-B20220812....

@System Tek_UK
systemtek. co. uk > 2026 > 04 > ongoing-campaign-exploiting-vulnerabilities-in-cisco-vpn-devices

Ongoing campaign exploiting vulnerabilities in Cisco VPN devices

3+ week, 6+ day ago  (165+ words) Cisco, working alongside the National Cyber Security Centre (NCSC) and the Cybersecurity and Infrastructure Security Agency (CISA), has identified a state-sponsored threat actor linked to the Arcane Door campaign. Because SSL VPNs, firewalls, and other edge devices are inherently exposed…...

@System Tek_UK
systemtek. co. uk > 2026 > 04 > lila-connect-down-for-hundreds-of-users

LILA Connect down for hundreds of users (15-04-2026)

1+ mon, 1+ week ago  (103+ words) The internet provider Lila Connect is down for hundreds of users. This afternoon (Wednesday 15th April 2026) we have seen many reports on social media from frustrated users who report their connection is down. The website Down Detector also reports problems with…...

Symbols: nasdaq:lila
@System Tek_UK
systemtek. co. uk > tag > cve-2026-34621

CVE-2026-34621 " System Tek " Technology news and information

1+ mon, 1+ week ago  (50+ words) Acrobat Reader Improperly Controlled Modification of Object Prototype Attributes vulnerability (CVE-2026-34621)systemtek. co. uk " Acrobat Reader versions 24. 001. 30356, 26. 001. 21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes (Prototype Pollution) vulnerability. - Email a link to a friend (Opens…...