SECURITY·중요도 9·2026. 08. 13.·The Hacker News
GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
── KO ──────────────────
GeoServer의 제로데이 취약점이 원격 코드 실행으로 이어질 수 있는 공격에 악용되고 있다.
GeoServer에서 새롭게 disclosed된 제로데이 취약점이 활동적인 악용 attempts를 받고 있다. 이 취약점은 SQL injection으로, 원격 코드 실행(RCE)으로 이어질 수 있다. CVE 식별자가 부여되지 않았으며, 패치도 아직 제공되지 않았다.
── EN ──────────────────
A newly disclosed GeoServer zero-day vulnerability is being actively exploited, potentially leading to RCE.
A newly disclosed zero-day flaw in GeoServer is witnessing active exploitation efforts. The vulnerability is an SQL injection that can lead to remote code execution (RCE). It has not yet been assigned a CVE identifier and remains unpatched.