Vendor
high
advisory
Hard-coded Replication Secret in Central Dogma Enables Cluster Takeover
3 TTPsCentral Dogma uses a hard-coded ZooKeeper replication secret that allows unauthenticated network actors to access configuration logs, perform session forgery, and gain cluster-wide command execution.
Central Dogma
configuration-vulnerability
hardcoded-credential
central-dogma
zookeeper
3t
critical
advisory
CVE-2026-9181: Unauthenticated Directory Traversal in ArcGIS Server
2 TTPs 1 IOCAn unauthenticated attacker can exploit CVE-2026-9181, a critical directory traversal vulnerability in ArcGIS Server versions 12.0 and prior, by sending crafted path parameters to access sensitive files, leading to unauthorized information disclosure.
ArcGIS Server +17
directory-traversal
web-vulnerability
esri
cve
2t
1i
updated