Skip to content
Auto-CTI

Weekly dossier · 2026-W29

Joel Traber AG

13.07.2026 – 19.07.2026

Strategic overview

HIGH

In KW 29, several critical vulnerabilities were disclosed that directly affect core components of Joel Traber AG's IT infrastructure, including SAP NetWeaver, Microsoft SQL Server, SharePoint, and Active Directory. The combination of remote code execution risks in SQL Server and the ODBC driver, alongside memory corruption flaws in Active Directory, poses a significant threat to the ERP landscape and manufacturing operations.

Alerts
146
CVEs
640
KEV
0
Critical
56

Top news

  • TAKTISCH Zero Day Initiative - Blog
    The July 2026 Security Update Review

    [The July 2026 Security Update Review] Well folks. Here we are. The bug apocalypse has fully descended upon us. I’ll do my best to sort this out in some way meaningful, but this month’s release shows us the nay-sayers were right, and I’ve got to hand it to the nay-sayers here. Excellent call.

    → Monthly security patch review covering Microsoft Office, Windows DHCP, and Adobe products relevant to the company's tech stack; however, this is a general digest without specific threat intelligence or active campaign details.

  • INFORMATIV Rapid7 Cybersecurity Blog
    CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)

    An authentication bypass (CVE-2026-55040) was chained by Rapid7 Labs with a separate RCE vulnerability to achieve unauthenticated remote code execution; patching the bypass breaks the exploit chain.

    → CVE-2026-55040 directly affects Microsoft SharePoint, which is in the company's tech stack (Microsoft 365 Teams, SharePoint, OneDrive); authentication bypass chained with RCE poses significant risk to collaboration and data access infrastructure.

Research Deep Dives

View all →
  • ZERO DAY INITIATIVE - BLOG 14/07/2026
    The July 2026 Security Update Review

    The July 2026 Patch Tuesday brings a record 621 Microsoft vulnerabilities, including two actively exploited zero-days. Adobe releases 88 CVEs across 12 products, with ColdFusion and Commerce requiring priority. Updates span a wide range of Microsoft products such as Windows, Office, Azure, Exchange, and even games. Of particular concern is a privilege escalation in Active Directory Federation Services (CVE-2026-56155), which may be linked to ransomware campaigns.

  • RAPID7 CYBERSECURITY BLOG 14/07/2026
    CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)

    Rapid7 Labs discovered a vulnerability in Microsoft SharePoint that allows bypassing JWT token authentication (CVE-2026-55040). An unauthenticated attacker can assume the identity of any SharePoint user, provided they know the user's username or SID. This vulnerability was chained with an RCE flaw to achieve unauthenticated remote code execution; the RCE component is expected to be patched in August 2026. The authentication bypass itself has already been fixed.

  • MICROSOFT SECURITY BLOG 13/07/2026
    Defending SaaS-based applications against ShinyHunters OAuth abuse

    Between mid-2025 and mid-2026, Microsoft observed ShinyHunters campaigns abusing OAuth trust relationships in SaaS applications like Salesforce. The threat actors used voice phishing, supply chain compromise via trusted integrations, and misconfigured guest access to gain unauthorized access, exfiltrate data, and establish persistence. This tradecraft allowed them to operate within legitimate workflows while evading conventional authentication detections. For organizations like Joel Traber AG in manufacturing, it is critical to monitor OAuth-connected applications, validate third-party integrations, and review guest access configurations.

Top vendors

  • Microsoft 97
  • Fortinet 11
  • Sap 10
  • 7-Zip 2
  • Siemens 2
  • OpenSSH 2

Top CVEs

  • CVE-2026-59841 CVE-2026-59841 7.5
  • CVE-2026-44747 CVE-2026-44747: SAP NetWeaver Application Server ABAP Memory Corruption Vulnerability 9.9
  • CVE-2026-42990 CVE-2026-42990: Heap-based Buffer Overflow in SQL Server ODBC Driver Allows Remote Code Execution 9.8
  • CVE-2026-49172 CVE-2026-49172: Heap-Based Buffer Overflow in Windows FTP Service 9.8
  • CVE-2026-50522 CVE-2026-50522 9.8
  • CVE-2026-48561 CVE-2026-48561 9.6
ESC