The vulnerability, tracked as CVE-2023-45249 (CVSS score: 9.8), concerns a case of remote code execution that stems from the use of default passwords.
The flaw impacts the following versions of Acronis Cyber Infrastructure (ACI) –
&
&
Researchers discovered and published details of an XSS attack that could potentially impact millions of websites around the world.
The post Millions of Websites Susceptible XSS Attack via OAuth Implementation Flaw appeared first on SecurityWeek.
Acronis warns of a critical-severity Acronis Cyber Infrastructure (ACI) vulnerability being exploited in attacks.
The post Acronis Product Vulnerability Exploited in the Wild appeared first on SecurityWeek.
HealthEquity says the personal and health information of 4.3 million individuals was compromised in a data breach.
The post 4.3 Million Impacted by HealthEquity Data Breach appeared first on SecurityWeek.
178 cybersecurity M&A deals were announced in the first half of 2024, the smallest half year number since SecurityWeek started tracking them.
The post SecurityWeek Analysis: 178 Cybersecurity M&A Deals Announced in First Half of 2024 appeared first on SecurityWeek.
Wiz has detailed SeleniumGreed, a campaign in which threat actors target exposed Selenium Grid instances for cryptomining.
The post Selenium Grid Instances Exploited for Cryptomining appeared first on SecurityWeek.
