Microsoft Active Directory Domain Services Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An “Important” security update released on March 10, 2026, addresses a high-severity flaw in Active Directory Domain Services (AD DS). Tracked as CVE-2026-25177, this vulnerability has a CVSS score of …

Microsoft SQL Server Zero-Day Vulnerability Allows Attackers to Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed a critical zero-day vulnerability in SQL Server that allows authenticated attackers to escalate their privileges to the highest administrative level on affected database systems. Tracked as CVE-2026-21262, …

Fortinet Security Update – Patch for Multiple Vulnerabilities That Enable Malicious Command Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet released a sweeping security advisory on March 10, 2026, addressing eleven vulnerabilities across its core enterprise products, including FortiManager, FortiAnalyzer, FortiSwitchAXFixed, and FortiSandbox. The flaws range from authentication bypasses …

Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Zoom has released four security bulletins on March 10, 2026, disclosing multiple vulnerabilities across its Windows-based client suite. The flaws, ranging from High to Critical severity, could allow attackers to …

Fortinet FortiManager fgtupdates Vulnerability Allows Attackers to Execute Malicious Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet has disclosed a high-severity stack-based buffer overflow vulnerability in its FortiManager platform that could allow remote unauthenticated attackers to execute unauthorized commands. Tracked as CVE-2025-54820 and assigned a CVSSv3 …

Microsoft Patch Tuesday March 2026 – 78 Vulnerabilities Fixed, Including One 0-day

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft released its March 2026 Patch Tuesday security update on March 10, 2026, addressing 78 vulnerabilities across Windows, Microsoft Office, Azure, SQL Server, and .NET. The update includes one actively …

Cloudflare Pingora Vulnerabilities Allows Request Smuggling & Cache Poisoning Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloudflare Pingora Vulnerabilities Cloudflare has released version 0.8.0 of its open-source Pingora framework to patch three critical vulnerabilities: CVE-2026-2833, CVE-2026-2835, and CVE-2026-2836. These flaws allow HTTP request smuggling and cache …

Kali Linux Enhances AI-driven Penetration Testing with Local Ollama, 5ire, and MCP Kali Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Kali Linux AI-driven Penetration Testing The Kali Linux team has published a new entry in its growing LLM-driven security series, this time eliminating all reliance on third-party cloud services by …

CISA Warns of Ivanti Endpoint Manager Authentication Bypass Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A serious security flaw in Ivanti Endpoint Manager has caught federal attention after the Cybersecurity and Infrastructure Security Agency (CISA) added it to the Known Exploited Vulnerabilities (KEV) catalog on …