FreshRSS

๐Ÿ”’
โŒ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
โ˜ โ˜† โœ‡ /r/netsec - Information Security News & Discussion

"Open sesame": Critical vulnerabilities in dormakaba physical access control system enable unlocking arbitrary doors

By: ๏ผu๏ผ0x9000 โ€” January 26th 2026 at 10:51

Multiple critical flaws (20 CVEs!) in dormakaba physical access control system exos 9300 & access manager & registration unit (pin pad) allow attackers with network access to open arbitrary doors, reconfigure connected controllers and peripherals without prior authentication, and much more. Seems some systems are also reachable over the internet due to misconfigurations.

"According to the manufacturer, several thousand customers were affected, a small proportion of whom operate in environments with high security requirements" (critical infrastructure).

submitted by /u/0x9000
[link] [comments]
โ˜ โ˜† โœ‡ /r/netsec - Information Security News & Discussion

Auth RCE in multiple Xerox printer series

By: ๏ผu๏ผ0x9000 โ€” October 23rd 2024 at 08:50

there were even two more unauthenticated RCE and authentication bypass issues found, Xerox already patched those in the past, but did not mention them in their security notes? ๐Ÿค”

submitted by /u/0x9000
[link] [comments]
โŒ