Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
Qilin Ransomware Lists RDP Auth History on Enumerates Authentication
April 30, 2026
Phoenix PhaaS Fuels Brand Smishing in Finance Platform Drives
April 30, 2026
Targeted Large-Scale Campaign Attacking U.S. Organizations with
April 30, 2026
Home/Vulnerabilities/CISA Confirms Active Exploitation of File FileZen Vulnerability
Vulnerabilities

CISA Confirms Active Exploitation of File FileZen Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed active exploitation of a critical vulnerability in FileZen by Soliton Systems K.K.. Due to the high risk associated with...

Jennifer sherman
Jennifer sherman
March 18, 2026 2 Min Read
0 0

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed active exploitation of a critical vulnerability in FileZen by Soliton Systems K.K..

Due to the high risk associated with this flaw, CISA has officially added it to the Known Exploited Vulnerabilities (KEV) Catalog.

This catalog serves as a critical resource for tracking security weaknesses currently being exploited in real-world attacks.

The inclusion of this flaw highlights an ongoing trend where cybercriminals specifically target enterprise file-sharing and transfer solutions.

Organizations utilizing the affected software are urged to assess their systems immediately and apply the necessary security updates to prevent potential unauthorized access or system compromise.

CVE ID CVSS Score Vulnerability Type Description Affected Component Affected Versions Impact
CVE-2026-25108 9.8 (Critical) OS Command Injection Allows remote execution of OS commands on FileZen, risking full system compromise and data theft. FileZen Core Server All unpatched versions Full system compromise, unauthorized access, potential data exfiltration

Active Exploitation Confirmed

The newly added vulnerability is categorized as an OS Command Injection flaw. This type of security weakness occurs when an application improperly validates user-supplied data before passing it to a system shell.

As a result, attackers can execute arbitrary operating system commands on the targeted device.

Threat actors highly prize command injection vulnerabilities because they often provide a direct pathway to complete system takeover, allowing attackers to manipulate files, install malware, or pivot further into the internal network.

CISA notes that this specific type of vulnerability represents a frequent and highly effective attack vector.

Because these flaws allow deep system access without requiring complex exploitation techniques, they pose a significant threat to both federal enterprises and private-sector organizations.

The active exploitation of this flaw indicates that threat actors have already developed functional exploits and are actively scanning the internet for vulnerable systems.

Under Binding Operational Directive (BOD) 22-01, Federal Civilian Executive Branch (FCEB) agencies are legally required to remediate vulnerabilities listed in the KEV Catalog within a specified timeframe.

This directive is designed to drastically reduce the significant risk posed by known exploited vulnerabilities across government networks.

Agencies must patch the FileZen vulnerability by the CISA-mandated deadline to maintain compliance and secure their infrastructure against these active threats.

While the mandatory patching requirements of BOD 22-01 apply strictly to federal agencies, CISA strongly advises private companies and other organizations to adopt the same rigorous standards.

Incorporating the KEV Catalog into routine vulnerability management practices is a highly effective strategy for minimizing exposure to ongoing cyberattacks.

CISA continues to evaluate new intelligence and will update the catalog as additional vulnerabilities meet the criteria for active exploitation.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

AttackCVEExploitMalwarePatchSecurityThreatVulnerability

Share Article

Jennifer sherman

Jennifer sherman

Jennifer is a cybersecurity news reporter covering data breaches, ransomware campaigns, and dark web markets. With a background in incident response, Jennifer provides unique insights into how organizations respond to cyber attacks and the evolving tactics of threat actors. Her reporting has covered major breaches affecting millions of users and has helped organizations understand emerging threats. Jennifer combines technical knowledge with investigative journalism to deliver in-depth coverage of cybersecurity incidents.

Previous Post

PoC Exploit for Windows ALPC Privilege Released Error

Next Post

Critical SolarWinds Serv-U Flaws Vulnerabilities Enables

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
Google Gemini CLI Flaws Allow Remote Code Execution on Hosts
April 30, 2026
Jenkins Fixes High-Severity Plugin Flaws: Patches Including
April 30, 2026
WordPress Plugin Hacked Since 2020 to Inject Malicious
April 30, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
Sarah simpson
Sarah simpson
Emy Elsamnoudy
Emy Elsamnoudy
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Detects Critical MongoDB CVE-

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us