CVE-2022-41082 (ProxyNotShell): Exchange Server Vulnerability Used in StrikeShark
CVE-2022-41082 is a remote code execution vulnerability in Microsoft Exchange Server, part of the ProxyNotShell attack chain. It was exploited in StrikeShark.
Critical and exploited CVEs, vulnerability intelligence and remediation guidance.
CVE-2022-41082 is a remote code execution vulnerability in Microsoft Exchange Server, part of the ProxyNotShell attack chain. It was exploited in StrikeShark.
CVE-2023-46747 is a critical vulnerability in F5 BIG-IP that allows remote code execution. It was exploited in the StrikeShark campaign.
CVE-2024-21762 is a vulnerability in Fortinet FortiOS that allows remote code execution. It was exploited in the StrikeShark campaign.
A remote code execution vulnerability in React applications, used as a lure in the ChocoPoC campaign.
CVE-2022-40684 is an authentication bypass vulnerability in Fortinet FortiOS. It was exploited in the StrikeShark campaign.
CVE-2023-20198 is a critical vulnerability in Cisco IOS XE Web UI that allows remote code execution. It was exploited in the StrikeShark…
Dokku is a docker-powered PaaS. Prior to 0.38.7, the cron plugin utilizes commands in the app.json file to manage system cron running…
A high-severity flaw in Amazon Q Developer could allow a malicious repository to execute commands and steal a developer's cloud credentials. The…
CVE-2026-12957 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
A vulnerability in Amazon Q Developer Language Server 1.69.0 and earlier allows malicious repositories to use symlinks to write to sensitive files…