S

EPISODE · May 5, 2026 · 0 MIN

MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs

from Security Stuff · host Trace3

Attackers are actively exploiting two critical vulnerabilities in enterprise software widely used in China. The first flaw in MetInfo, a content management system, allows remote code execution through unauthenticated PHP code injection, with exploitation surging over the weekend primarily targeting servers in Singapore. Separately, threat actors are exploiting a vulnerability in Weaver E-cology, an office automation platform, using exposed debug functionality as a persistent shell to execute arbitrary commands without needing authentication.

Episode metadata supplied by the publisher feed · Published May 5, 2026

Embed this episode

NOW PLAYING

MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs

0:00 0:37

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Security Stuff?

This episode is 0 minutes long.

When was this Security Stuff episode published?

This episode was published on May 5, 2026.

Can I download this Security Stuff episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!