"CVE" Related Articles

PoC exploit for recently patched Microsoft Word RCE is public (CVE-2023-21716)
Vulnerabilities

PoC exploit for recently patched Microsoft Word RCE is public (CVE-2023-21716)

A PoC exploit for CVE-2023-21716, a critical RCE vulnerability in Microsoft Word that can be exploited when the user previews...
Read The Article →
Fortinet plugs critical security hole in FortiNAC, with a PoC incoming (CVE-2022-39952)
Vulnerabilities

Fortinet plugs critical security hole in FortiNAC, with a PoC incoming (CVE-2022-39952)

Fortinet has dropped fixes for 40 vulnerabilities in a variety of its products, including two critical vulnerabilities affecting its FortiNAC...
Read The Article →
Apple fixes actively exploited WebKit zero-day in iOS, macOS (CVE-2023-23529)
Vulnerabilities

Apple fixes actively exploited WebKit zero-day in iOS, macOS (CVE-2023-23529)

Apple has released security updates that fix a WebKit zero-day vulnerability that "May have been actively exploited."The bug has been...
Read The Article →
Critical QNAP NAS vulnerability fixed, update your device ASAP! (CVE-2022-27596)
Ransomware

Critical QNAP NAS vulnerability fixed, update your device ASAP! (CVE-2022-27596)

QNAP Systems has fixed a critical vulnerability affecting QNAP network-attached storage devices, which could be exploited by remote attackers to...
Read The Article →
Critical VMware vRealize Log Insight flaws patched (CVE-2022-31706, CVE-2022-31704)
Vulnerabilities

Critical VMware vRealize Log Insight flaws patched (CVE-2022-31706, CVE-2022-31704)

VMware has fixed two critical and two important security vulnerabilities in VMware vRealize Log Insight, its multi-cloud solution for centralized...
Read The Article →
FortiOS flaw was exploited to compromise governmental targets (CVE-2022-42475)
Vulnerabilities

FortiOS flaw was exploited to compromise governmental targets (CVE-2022-42475)

A critical vulnerability in FortiOS SSL-VPN that Fortinet has issued patches for in November 2022 has been exploited by attackers...
Read The Article →
New Microsoft Exchange exploit chain lets ransomware attackers in (CVE-2022-41080)
Ransomware

New Microsoft Exchange exploit chain lets ransomware attackers in (CVE-2022-41080)

Ransomware-wielding attackers are using a new exploit chain that includes one of the ProxyNotShell vulnerabilities to achieve remote code execution...
Read The Article →
Pre-auth RCE in Oracle Fusion Middleware exploited in the wild (CVE-2021-35587)
Vulnerabilities

Pre-auth RCE in Oracle Fusion Middleware exploited in the wild (CVE-2021-35587)

A pre-authentication RCE flaw in Oracle Access Manager that has been fixed in January 2022 is being exploited by attackers...
Read The Article →
Vulnerabilities in Cisco Identity Services Engine require your attention (CVE-2022-20822, CVE-2022-20959)
Vulnerabilities

Vulnerabilities in Cisco Identity Services Engine require your attention (CVE-2022-20822, CVE-2022-20959)

Cisco has published a heads-up for admins of Cisco Identity Services Engine solutions, about two vulnerabilities that could be exploited...
Read The Article →
Microsoft patches Windows flaw exploited in the wild (CVE-2022-41033)
Vulnerabilities

Microsoft patches Windows flaw exploited in the wild (CVE-2022-41033)

October 2022 Patch Tuesday is here, with fixes for 85 CVE-numbered vulnerabilities, including CVE-2022-41033, a vulnerability in Windows COM+ Event...
Read The Article →
Auth bypass bug in FortiOS, FortiProxy is exploited in the wild (CVE-2022-40684)
Vulnerabilities

Auth bypass bug in FortiOS, FortiProxy is exploited in the wild (CVE-2022-40684)

CVE-2022-40684 is an authentication bypass vulnerability on vulnerable devices' administrative interface that can be triggered by sending a specially crafted...
Read The Article →
Python tarfile vulnerability affects 350,000 open-source projects (CVE-2007-4559)
Vulnerabilities

Python tarfile vulnerability affects 350,000 open-source projects (CVE-2007-4559)

Trellix Advanced Research Center published its research into CVE-2007-4559, a vulnerability estimated to be present in over 350,000 open-source projects...
Read The Article →

BOOK A MEETING

Enter your Email Address

This field is for validation purposes and should be left unchanged.

* No free email provider (e.g: gmail.com, hotmail.com, etc.)

This site is registered on wpml.org as a development site. Switch to a production site key to remove this banner.