Cyber

Rejetto HFS Servers Actively Scanned for Critical RCE Flaw

According to BleepingComputer, hackers are actively scanning the web for the CVE-2026-61500 vulnerability in Rejetto HFS, which leads to account takeover and RCE.

·1 min read
Rejetto HFS Servers Actively Scanned for Critical RCE Flaw

Cybersecurity researchers have detected an increase in scanning activity targeting Rejetto HTTP File Server (HFS) instances across the web.

The security flaw, tracked as CVE-2026-61500, stems from a weak signing key vulnerability within the application that compromises session integrity.

Experts warn that successful exploitation of this vulnerability allows attackers to forge sessions, execute account takeovers, and run remote code execution (RCE) on the affected servers.

Critical flaws of this nature pose severe risks to organizations worldwide, as threat actors leverage automated scanning tools to rapidly identify and compromise vulnerable endpoints.

System administrators and IT professionals managing file-sharing infrastructure are strongly advised to check their Rejetto HFS deployments and apply necessary updates or mitigations immediately.

#Rejetto HFS#RCE#Kiberxavfsizlik#CVE-2026-61500#Serverlar#BleepingComputer

Related articles