⤷ Title: Fortra BoKS Vulnerability Opens Door to Remote Command Injection
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 02:30:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BoKS #Command Injection #Core Privileged Access Manager #CVE_2026_9862 #Fortra #PAM
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 02:30:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BoKS #Command Injection #Core Privileged Access Manager #CVE_2026_9862 #Fortra #PAM
Daily CyberSecurity
Fortra BoKS Vulnerability Opens Door to Remote Command Injection
A critical Fortra BoKS vulnerability (CVE-2026-9862) enables remote OS command injection via the autoregistration service. Mitigate now.
⤷ Title: QNAP Patches 14 Vulnerabilities in QTS, QuTS hero, and QVP Devices
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 09:12:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2025_66273 #NAS #QNAP #QSA_26_10 #QTS #QuTS hero #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sun, 21 Jun 2026 09:12:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2025_66273 #NAS #QNAP #QSA_26_10 #QTS #QuTS hero #Vulnerability
Daily CyberSecurity
QNAP Patches 14 Vulnerabilities in QTS, QuTS hero, and QVP Devices
QNAP patched 14 NAS vulnerabilities in QTS, QuTS hero, and QVP, including command injection and credential-theft flaws. Update your QNAP NAS now.
⤷ Title: Mitel Patches 12 Critical MiCollab Vulnerabilities Rated Up to CVSS 10.0
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 23 Jun 2026 01:00:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #MiCollab #MISA_2026_0005 #Mitel #MiVoice Business #sql injection
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 23 Jun 2026 01:00:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #MiCollab #MISA_2026_0005 #Mitel #MiVoice Business #sql injection
Daily CyberSecurity
Mitel Patches 12 Critical MiCollab Vulnerabilities Rated Up to CVSS 10.0
Mitel patched 12 critical MiCollab vulnerabilities, several at CVSS 10.0. Unauthenticated command injection and SQL injection flaws need urgent updates.
⤷ Title: Windows CLI Basics: Command Prompt Administration and Reconnaissance
════════════════════════
𐀪 Author: Jonathan Sanfer
════════════════════════
ⴵ Time: Wed, 24 Jun 2026 02:06:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #windows_cli_basics #command_prompt #windows_administration #tryhackme
════════════════════════
𐀪 Author: Jonathan Sanfer
════════════════════════
ⴵ Time: Wed, 24 Jun 2026 02:06:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #windows_cli_basics #command_prompt #windows_administration #tryhackme
Medium
Windows CLI Basics: Command Prompt Administration and Reconnaissance
Introduction
⤷ Title: CVSS 8.7 Unauthenticated RCE Impacts Multiple TP-Link Routers
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 00:29:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2026_11834 #TP_Link
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 00:29:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2026_11834 #TP_Link
Daily CyberSecurity
CVSS 8.7 Unauthenticated RCE Impacts Multiple TP-Link Routers
A CVSS 8.7 TP-Link router command injection flaw allows unauthenticated remote code execution. Patch CVE-2026-11834 to stop this DHCP option vulnerability.
⤷ Title: Lab 4: Blind OS Command Injection with Out-of-Band Interaction — PortSwigger Web Security Academy…
════════════════════════
𐀪 Author: Nitish Mukhiya
════════════════════════
ⴵ Time: Sat, 27 Jun 2026 13:22:23 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #portswigger_lab #cybersecurity #command_injection
════════════════════════
𐀪 Author: Nitish Mukhiya
════════════════════════
ⴵ Time: Sat, 27 Jun 2026 13:22:23 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #portswigger_lab #cybersecurity #command_injection
Medium
Lab 4: Blind OS Command Injection with Out-of-Band Interaction — PortSwigger Web Security Academy Walkthrough (Part 4 of 5)
When there’s no file to read and no time delay to measure: proving Remote Code Execution using Burp Collaborator and DNS callbacks.
⤷ Title: [Silent Monitor] — Breaking an Internal Flask Application via SQLi, Command Injection, and KeePass…
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 08:21:03 GMT
════════════════════════
⌗ Tags: #capture_the_flag #sql_injection #privilege_escalation #tryhackme #command_injection
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 08:21:03 GMT
════════════════════════
⌗ Tags: #capture_the_flag #sql_injection #privilege_escalation #tryhackme #command_injection
Medium
[Silent Monitor] — Breaking an Internal Flask Application via SQLi, Command Injection, and KeePass Credential Vault Abuse
Internal Application Compromise: SQL Injection, Command Injection, and KeePass-Based Privilege Escalation in a Full Attack Chain.
⤷ Title: Kemp LoadMaster RCE Vulnerability Exploited in the Wild After Public PoC Release
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 16:22:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2026_33691 #CVE_2026_8037 #Kemp LoadMaster #Progress Software #Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 16:22:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2026_33691 #CVE_2026_8037 #Kemp LoadMaster #Progress Software #Remote Code Execution
Daily CyberSecurity
Kemp LoadMaster RCE Vulnerability Exploited in the Wild After Public PoC Release
TL;DR Attackers began exploiting the Kemp LoadMaster RCE vulnerability, tracked as CVE-2026-8037, on June 29, 2026. That timing matched the public release of proof-of-concept exploit code. The fla…
⤷ Title: StoneFly Storage Concentrator Flaws Allow Unauthenticated Root Access
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 00:55:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA ICS advisory #Command Injection #CVE_2026_55721 #CVE_2026_56413 #CVE_2026_56415 #hardcoded credentials #sql injection #Stonefly #StoneFly Storage Concentrator
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 00:55:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA ICS advisory #Command Injection #CVE_2026_55721 #CVE_2026_56413 #CVE_2026_56415 #hardcoded credentials #sql injection #Stonefly #StoneFly Storage Concentrator
Daily CyberSecurity
StoneFly Storage Concentrator Flaws Allow Unauthenticated Root Access
TL;DR CISA published an advisory for five StoneFly Storage Concentrator vulnerabilities on 30 June 2026. Two rate a maximum CVSS score of 10.0. Both let an unauthenticated attacker run commands as…
⤷ Title: Critical IBM Power HMC Vulnerability Exposes Systems
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 08:29:10 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2026_12943 #IBM #Power HMC #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 08:29:10 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2026_12943 #IBM #Power HMC #Vulnerability
Daily CyberSecurity
Critical IBM Power HMC Vulnerability Exposes Systems
TL;DR IBM disclosed a critical CVSS 9.8 flaw, tracked as CVE-2026-12943, in its Power Hardware Management Console (HMC). This IBM Power HMC vulnerability allows unauthenticated attackers to run ar…