یادآوری: اطلاعات این سامانه از منابع معرفی‌شده گردآوری می‌شود. پیش از هر اقدام فنی، جزئیات را در منبع اصلی بررسی کنید.
بحرانی اولویت 51/100

Critical Vulnerability in cPanel & WHM

12 August 2026August 2026 Monthly PatchMicrosoft has released security patches to address multiple vulnerabilities in their software and products.12 August 2026Security Bulletin 12 Aug 2026 [PDF, 2MB]7 August 2026Missing Encryption Vulnerability in Apache TomcatAttackers can exploit a missing encryption vulnerability in Apache Tomcat to bypass the EncryptInterceptor, potentially exposing sensitive data transmitted between cluster nodes. Patch immediately.7 August 2026Multiple Vulnerabilities in Cisco IOS XE SoftwareMultiple vulnerabilities have been identified in Cisco IOS XE Software that could allow attackers to execute arbitrary commands, bypass security controls, gain unauthorised access, disclose sensitive information, or affect the operation of vulnerable systems. Patch immediately.7 August…

انتشار: 2026-08-12 00:00 آخرین مشاهده داده: 2026-08-18 10:50 1 منبع · 1 رسمیاعتماد متوسط · 45/100
اولویت VulnWatch 51/100 ترکیب سیگنال‌های ریسک موجود
CVSS / EPSS — / — شدت فنی / احتمال بهره‌برداری
کیفیت داده 43/100 کیفیت محدود · اعتماد متوسط
تازگی داده قدیمی قدیمی‌تر از ۳۰ روز · 1 منبع
راهنمای اقدام

الان چه کاری باید انجام شود؟

پایش و ارزیابی
کیفیت داده 43/100کیفیت محدود · 1 منبع؛ پیش از تغییر Production منبع اصلی را بررسی کنید.
راهکارراهکار ساختاریافته هنوز ثبت نشده است؛ مراجع اصلی را بررسی کنید.
رفتن به راهکار این راهنمای اقدام، RiskScorer را تغییر نمی‌دهد و جایگزین ارزیابی محیط شما نیست.
اولویت عملیاتی 2.5

چرا این مورد باید بررسی شود؟

این امتیاز مستقل از RiskScorer است و برای مرتب‌سازی اقدام‌های عملیاتی استفاده می‌شود.

Priority38
شدت بحرانی
01

خلاصه آسیب‌پذیری

12 August 2026August 2026 Monthly PatchMicrosoft has released security patches to address multiple vulnerabilities in their software and products.12 August 2026Security Bulletin 12 Aug 2026 [PDF, 2MB]7 August 2026Missing Encryption Vulnerability in Apache TomcatAttackers can exploit a missing encryption vulnerability in Apache Tomcat to bypass the EncryptInterceptor, potentially exposing sensitive data transmitted between cluster nodes. Patch immediately.7 August 2026Multiple Vulnerabilities in Cisco IOS XE SoftwareMultiple vulnerabilities have been identified in Cisco IOS XE Software that could allow attackers to execute arbitrary commands, bypass security controls, gain unauthorised access, disclose sensitive information, or affect the operation of vulnerable systems. Patch immediately.7 August…
02

توضیحات کامل

12 August 2026August 2026 Monthly PatchMicrosoft has released security patches to address multiple vulnerabilities in their software and products.12 August 2026Security Bulletin 12 Aug 2026 [PDF, 2MB]7 August 2026Missing Encryption Vulnerability in Apache TomcatAttackers can exploit a missing encryption vulnerability in Apache Tomcat to bypass the EncryptInterceptor, potentially exposing sensitive data transmitted between cluster nodes. Patch immediately.7 August 2026Multiple Vulnerabilities in Cisco IOS XE SoftwareMultiple vulnerabilities have been identified in Cisco IOS XE Software that could allow attackers to execute arbitrary commands, bypass security controls, gain unauthorised access, disclose sensitive information, or affect the operation of vulnerable systems. Patch immediately.7 August 2026Multiple Vulnerabilities in Cisco Catalyst SD-WAN SoftwareAttackers can exploit multiple vulnerabilities in Cisco Catalyst SD-WAN Software to bypass security controls, gain unauthorised access, access or manipulate files, and disclose sensitive information. Patch immediately.6 August 2026CatchPulse – Multiple Vulnerabilities including Improper Access Control, Unprivileged SYSTEM-Level Operations and Denial of Service Multiple vulnerabilities have been discovered in CatchPulse. SecureAge, the product owner, has rolled out fixes for all reported vulnerabilities. Special thanks to the informer and SecureAge for coordinating through CSA's Responsible Vulnerability Disclosure Policy.6 August 2026Active exploitation of Critical Vulnerability in IBM Langflow OSS Attackers are actively exploiting a critical vulnerability in IBM Langflow OSS to achieve unauthenticated remote code execution (RCE). Users and administrators of affected products are advised to apply the latest security
✓

راهکار پیشنهادی برای رفع

اقدام پیشنهادی
در اطلاعات دریافت‌شده هنوز راهکار مشخصی ثبت نشده است.
در اطلاعات دریافت‌شده دستور اجرایی مشخصی پیدا نشد. برای بررسی کامل راهکار، منبع اصلی را باز کنید.
↺

تاریخچه تغییرات معنادار

فقط تغییرات امنیتی مهم مثل KEV، افزایش شدت/CVSS/EPSS، نسخه‌های درگیر و راهکار ثبت می‌شوند.
تاریخچه معنادار از زمان فعال‌شدن موتور 2.5 ساخته می‌شود.
◎

اعتماد، تازگی و پوشش داده

این شاخص عملیاتی از پوشش منابع، کامل‌بودن رکورد، تازگی داده و اختلاف بین منابع ساخته می‌شود و تضمین صحت نیست.
45/100
اعتماد متوسط اعتماد داده 43/100 کیفیت محدود داده قدیمی وضعیت تازگی قدیمی‌تر از ۳۰ روز تازگی مشاهده 50/100 کامل‌بودن · ناقص 47/100 پوشش منابع 1 منبع مرتبط 1 رسمی · 0 سطح ۱ 0 اختلاف بین منابع 4 خلأ کیفیت
CSA Singapore Alerts رسمی
CVSS
—
شدت
low
محصول
—
نسخه درگیر
—
نسخه اصلاح‌شده
—
تاریخ انتشار منبع
2026-08-12
⌁

منبع هر داده

برای فیلدهای اصلی می‌توانید ببینید هر مقدار از کدام منبع ثبت شده است. اختلاف بین منابع پنهان نمی‌شود.
توضیحات 1 منبع
CSA Singapore Alertsرسمی
14 August 2026SPF-CSA Joint Advisory On Cryptocurrency Scams Involving Fake Job Offers And Compromised Software SystemsThe Singapore Police Force (SPF) and Cyber Security Agency of Singapore (CSA) would like to alert members of the public and businesses of a cryptocurrency-related scam involving fake job offers and the compromise of software systems.12 August 2026August 2026 Monthly PatchMicrosoft...
منبع ↗
شدت 1 منبع
CSA Singapore Alertsرسمی
low
منبع ↗
خلاصه 1 منبع
CSA Singapore Alertsرسمی
14 August 2026SPF-CSA Joint Advisory On Cryptocurrency Scams Involving Fake Job Offers And Compromised Software SystemsThe Singapore Police Force (SPF) and Cyber Security Agency of Singapore (CSA) would like to alert members of the public and businesses of a cryptocurrency-related scam involving fake job offers and the compromise of software systems.12 August 2026August 2026 Monthly PatchMicrosoft...
منبع ↗
عنوان 1 منبع
CSA Singapore Alertsرسمی
Critical Vulnerability in cPanel & WHM
منبع ↗
↗