Tag: authentication bypass
Oracle PeopleSoft RCE Flaw Allows Auth Bypass via Deserialization
A deserialization vulnerability in Oracle PeopleSoft's HubMBeanPersistance method enables remote code execution, with the built-in authentication requirement undermined by a bypass condition.
Quest NetVault Backup XSS Flaw Enables Authentication Bypass
A cross-site scripting vulnerability in Quest NetVault Backup's viewclient webpage allows remote attackers to bypass authentication and, chained with other flaws, execute…
SimpleHelp Auth Bypass Exploited to Deploy Djinn Stealer and TaskWeaver
Attackers are actively exploiting a critical authentication bypass in SimpleHelp RMM software to install two previously undocumented malware families targeting developer credentials,…
Active Exploitation of PAN-OS GlobalProtect Auth Bypass CVE-2026-0257
Unit 42 has confirmed active in-the-wild exploitation of a PAN-OS authentication bypass affecting GlobalProtect portals and gateways, with the flaw added to…