Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
  • Home
  • Alert Feeds
  • SEC Consult SA-20260427-0 :: Missing TLS Certificate Validation leading to RCE in DeskTime Time Tracking App  – Full Disclosure
AttackFeed by Joe Wagner | SEC Consult SA-20260427-0 :: Missing TLS Certificate Validation leading to RCE in DeskTime Time Tracking App  - Full Disclosure

SEC Consult SA-20260427-0 :: Missing TLS Certificate Validation leading to RCE in DeskTime Time Tracking App  – Full Disclosure

Posted on April 29, 2026 By Joe-W No Comments on SEC Consult SA-20260427-0 :: Missing TLS Certificate Validation leading to RCE in DeskTime Time Tracking App  – Full Disclosure
Alert Feeds

 

Posted by SEC Consult Vulnerability Lab via Fulldisclosure on Apr 29

SEC Consult Vulnerability Lab Security Advisory < 20260427-0 >
=======================================================================
title: Missing TLS Certificate Validation leading to RCE
product: DeskTime Time Tracking App
vulnerable version: 1.3.671
fixed version: –
CVE number: CVE-2025-10539
             impact: medium
homepage:https://desktime.com…
 – Read More  – Full Disclosure 

Post navigation

❮ Previous Post: Re: SEC Consult SA-20260427-0 :: Missing TLS Certificate Validation leading to RCE in DeskTime Time Tracking App  – Full Disclosure
Next Post: SEC Consult SA-20260423-0 :: DLL Hijacking in EfficientLab Controlio (cloud-based employee monitoring service)  – Full Disclosure ❯

You may also like

AttackFeed by Joe Wagner | [SECURITY ADVISORY] CVE-2026-34473 - Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)  - Full Disclosure
Alert Feeds
[SECURITY ADVISORY] CVE-2026-34473 – Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)  – Full Disclosure
May 25, 2026
AttackFeed by Joe Wagner | APPLE-SA-03-11-2026-1 iOS 16.7.15 and iPadOS 16.7.15  - Full Disclosure
Alert Feeds
APPLE-SA-03-11-2026-1 iOS 16.7.15 and iPadOS 16.7.15  – Full Disclosure
March 12, 2026
AttackFeed by Joe Wagner | APPLE-SA-03-24-2026-7 watchOS 26.4  - Full Disclosure
Alert Feeds
APPLE-SA-03-24-2026-7 watchOS 26.4  – Full Disclosure
March 28, 2026
AttackFeed by Joe Wagner | APPLE-SA-03-24-2026-10 Xcode 26.4  - Full Disclosure
Alert Feeds
APPLE-SA-03-24-2026-10 Xcode 26.4  – Full Disclosure
March 28, 2026

Leave a Reply Cancel reply

You must be logged in to post a comment.

  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.