Topic: exploitation status
-
Over 1,200 IceWarp Servers Exposed to Critical RCE Flaw
A critical remote code execution vulnerability (CVE-2025-14500) in IceWarp software puts over 1,200 internet-facing servers at immediate risk, requiring urgent patching. The flaw is an unauthenticated OS command injection that grants attackers full system control, and patches have been available ...
Read More » -
SolarWinds Issues Urgent Patch for Critical Web Help Desk Flaw
SolarWinds has released an urgent hotfix for a critical, unauthenticated remote code execution vulnerability (CVE-2025-26399) in its Web Help Desk software, which poses a severe risk to affected systems. The flaw is a patch bypass for a previous vulnerability and stems from unsafe deserialization...
Read More » -
WatchGuard Issues Critical Firewall Vulnerability Alert
WatchGuard has disclosed a critical remote code execution vulnerability (CVE-2025-9242) in its Firebox firewalls, allowing unauthenticated attackers to run arbitrary code on affected devices. The flaw impacts Fireware OS versions 11.x, 12.x, and 2025.1, specifically when IKEv2 VPN is configured, ...
Read More »