Tag

#privilege escalation

52 stories taggedprivilege escalation · page 4 of 4.

Vulnerabilities

Unauthenticated Admin-Account Bug in WP Maps Pro Draws Active Exploitation

CVE-2026-8732 lets attackers create administrator accounts without credentials — and exploitation is already underway against live WordPress installations.

2 min read
Vulnerabilities

PoC Drops for 19-Year-Old Linux Kernel Privilege-Escalation Bug in CIFSwitch

A flaw that's been sitting in the kernel since the mid-2000s now has working exploit code. Low-privileged users can reach root.

2 min read
Vulnerabilities

CIFSwitch: Linux Kernel Key-Handling Bug Hands Out Root Across Major Distros

A local privilege escalation in the kernel's CIFS authentication path lets an unprivileged user forge key descriptions and walk away with root.

3 min read
Vulnerabilities

Microsoft Rushes Fixes for Two Actively Exploited Defender Zero-Days as CISA Adds Both to KEV

A disgruntled researcher's GitHub exploits may be behind attacks on the Malware Protection Engine and Antimalware Platform — but Microsoft isn't saying so.

2 min read
Identity & Access

The Perimeter Is Gone. Attackers Already Knew That.

Modern intrusions rarely crack the wall. They walk through the front door, wearing your credentials.

3 min read
Vulnerabilities

Two Defender flaws under active exploitation, Microsoft confirms

A SYSTEM-level link-following bug and a denial-of-service issue in Microsoft Defender are both being abused in the wild.

2 min read
Vulnerabilities

LiteSpeed cPanel Plugin Flaw Hands Root to Any Logged-In User, and the Vendor Won't Say How Many Hosts Are Hit

CVE-2026-48172 carries a CVSS of 10.0, is already being exploited, and LiteSpeed has not answered three questions about exploitation telemetry.

2 min read
© 2026 Threat Vectr