Vulnerabilities

Recent Apache Struts 2 Vulnerability in Attacker Crosshairs

Recent Apache Struts 2 Vulnerability in Attacker Crosshairs 15/12/2023 at 14:55 By Ionut Arghire Attackers are attempting to exploit a critical RCE flaw in Apache Struts 2 after researchers publish PoC code. The post Recent Apache Struts 2 Vulnerability in Attacker Crosshairs appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed […]

Recent Apache Struts 2 Vulnerability in Attacker Crosshairs Read More »

Dell Urges Customers to Patch Vulnerabilities in PowerProtect Products

Dell Urges Customers to Patch Vulnerabilities in PowerProtect Products 14/12/2023 at 15:23 By Eduard Kovacs Dell is informing PowerProtect DD product customers about 8 vulnerabilities, including many rated ‘high severity’, and urging them to install patches. The post Dell Urges Customers to Patch Vulnerabilities in PowerProtect Products appeared first on SecurityWeek. This article is an

Dell Urges Customers to Patch Vulnerabilities in PowerProtect Products Read More »

Chrome 120 Update Patches High-Severity Vulnerabilities

Chrome 120 Update Patches High-Severity Vulnerabilities 13/12/2023 at 15:01 By Ionut Arghire A Chrome 120 security update resolves nine vulnerabilities, including five high-severity flaws reported externally. The post Chrome 120 Update Patches High-Severity Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

Chrome 120 Update Patches High-Severity Vulnerabilities Read More »

Sophos Patches EOL Firewalls Against Exploited Vulnerability

Sophos Patches EOL Firewalls Against Exploited Vulnerability 13/12/2023 at 13:46 By Ionut Arghire Sophos has patched EOL Firewall versions against a critical flaw exploited in the wild, after identifying a new exploit. The post Sophos Patches EOL Firewalls Against Exploited Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

Sophos Patches EOL Firewalls Against Exploited Vulnerability Read More »

Microsoft Patch Tuesday: Critical Spoofing and Remote Code Execution Flaws

Microsoft Patch Tuesday: Critical Spoofing and Remote Code Execution Flaws 12/12/2023 at 23:47 By Ryan Naraine Microsoft warns of critical spoofing and remote code execution bugs in the Windows MSHTML Platform and Microsoft Power Platform Connector. The post Microsoft Patch Tuesday: Critical Spoofing and Remote Code Execution Flaws appeared first on SecurityWeek. This article is

Microsoft Patch Tuesday: Critical Spoofing and Remote Code Execution Flaws Read More »

Adobe Patches 207 Security Bugs in Mega Patch Tuesday Bundle

Adobe Patches 207 Security Bugs in Mega Patch Tuesday Bundle 12/12/2023 at 23:47 By Ryan Naraine Adobe warned users on both Windows and macOS systems about exposure to code execution, memory leaks and denial-of-service security issues. The post Adobe Patches 207 Security Bugs in Mega Patch Tuesday Bundle appeared first on SecurityWeek. This article is

Adobe Patches 207 Security Bugs in Mega Patch Tuesday Bundle Read More »

SAP Patches Critical Vulnerability in Business Technology Platform

SAP Patches Critical Vulnerability in Business Technology Platform 12/12/2023 at 22:01 By Ionut Arghire SAP patches multiple vulnerabilities in the Business Technology Platform, including a critical elevation of privilege bug. The post SAP Patches Critical Vulnerability in Business Technology Platform appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original

SAP Patches Critical Vulnerability in Business Technology Platform Read More »

Flaws in Backup Migration and Elementor WordPress Plugins Allow Remote Code Execution

Flaws in Backup Migration and Elementor WordPress Plugins Allow Remote Code Execution 12/12/2023 at 17:31 By Ionut Arghire Critical remote code execution flaws in Backup Migration and Elementor plugins expose WordPress sites to attacks. The post Flaws in Backup Migration and Elementor WordPress Plugins Allow Remote Code Execution appeared first on SecurityWeek. This article is

Flaws in Backup Migration and Elementor WordPress Plugins Allow Remote Code Execution Read More »

Apple Ships iOS 17.2 With Urgent Security Patches

Apple Ships iOS 17.2 With Urgent Security Patches 12/12/2023 at 01:31 By Ryan Naraine Cupertino’s flagship mobile OS vulnerable to arbitrary code execution and data exposure security vulnerabilities. The post Apple Ships iOS 17.2 With Urgent Security Patches appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

Apple Ships iOS 17.2 With Urgent Security Patches Read More »

‘5Ghoul’ Vulnerabilities Haunt Qualcomm, MediaTek 5G Modems

‘5Ghoul’ Vulnerabilities Haunt Qualcomm, MediaTek 5G Modems 12/12/2023 at 00:31 By Ionut Arghire Researchers call attention to 14 security defects taht can be exploited to drop and freeze 5G connections on smartphones and routers. The post ‘5Ghoul’ Vulnerabilities Haunt Qualcomm, MediaTek 5G Modems appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

‘5Ghoul’ Vulnerabilities Haunt Qualcomm, MediaTek 5G Modems Read More »

Google Patches Chromecast Vulnerabilities Exploited at Hacking Contest

Google Patches Chromecast Vulnerabilities Exploited at Hacking Contest 11/12/2023 at 18:16 By Eduard Kovacs Google has patched several high and moderate-severity Chromecast vulnerabilities demonstrated earlier this year at a hacking competition.  The post Google Patches Chromecast Vulnerabilities Exploited at Hacking Contest appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

Google Patches Chromecast Vulnerabilities Exploited at Hacking Contest Read More »

Apache Patches Critical RCE Vulnerability in Struts 2

Apache Patches Critical RCE Vulnerability in Struts 2 11/12/2023 at 15:49 By Ionut Arghire Apache has addressed a critical-severity Struts 2 file upload vulnerability that could lead to remote code execution. The post Apache Patches Critical RCE Vulnerability in Struts 2 appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

Apache Patches Critical RCE Vulnerability in Struts 2 Read More »

WordPress 6.4.2 Patches Remote Code Execution Vulnerability

WordPress 6.4.2 Patches Remote Code Execution Vulnerability 08/12/2023 at 18:32 By Ionut Arghire WordPress 6.4.2 patches a flaw that could be chained with another vulnerability to execute arbitrary code. The post WordPress 6.4.2 Patches Remote Code Execution Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

WordPress 6.4.2 Patches Remote Code Execution Vulnerability Read More »

Russian APT Used Zero-Click Outlook Exploit

Russian APT Used Zero-Click Outlook Exploit 08/12/2023 at 18:32 By Ionut Arghire Russian threat actor APT28 has been exploiting a no-interaction Outlook vulnerability in attacks against 14 countries. The post Russian APT Used Zero-Click Outlook Exploit appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

Russian APT Used Zero-Click Outlook Exploit Read More »

Atlassian Patches Critical Remote Code Execution Vulnerabilities

Atlassian Patches Critical Remote Code Execution Vulnerabilities 07/12/2023 at 13:32 By Ionut Arghire Atlassian has released patches for critical-severity remote code execution flaws in Confluence and other products. The post Atlassian Patches Critical Remote Code Execution Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

Atlassian Patches Critical Remote Code Execution Vulnerabilities Read More »

Exploitation of Recent Cisco IOS XE Vulnerabilities Spikes

Exploitation of Recent Cisco IOS XE Vulnerabilities Spikes 06/12/2023 at 19:03 By Ionut Arghire The Shadowserver Foundation warns of an increase in the number of devices hacked via recent Cisco IOS XE vulnerabilities. The post Exploitation of Recent Cisco IOS XE Vulnerabilities Spikes appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

Exploitation of Recent Cisco IOS XE Vulnerabilities Spikes Read More »

Enterprise, Consumer Devices Exposed to Attacks via Malicious UEFI Logo Images

Enterprise, Consumer Devices Exposed to Attacks via Malicious UEFI Logo Images 06/12/2023 at 19:03 By Eduard Kovacs LogoFAIL is an UEFI image parser attack allowing hackers to compromise consumer and enterprise devices using malicious logo images. The post Enterprise, Consumer Devices Exposed to Attacks via Malicious UEFI Logo Images appeared first on SecurityWeek. This article

Enterprise, Consumer Devices Exposed to Attacks via Malicious UEFI Logo Images Read More »

CISA Urges Federal Agencies to Patch Exploited Qualcomm Vulnerabilities

CISA Urges Federal Agencies to Patch Exploited Qualcomm Vulnerabilities 06/12/2023 at 16:01 By Ionut Arghire CISA has added to its Known Exploited Vulnerabilities Catalog four Qualcomm bugs, including three exploited as zero-days. The post CISA Urges Federal Agencies to Patch Exploited Qualcomm Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

CISA Urges Federal Agencies to Patch Exploited Qualcomm Vulnerabilities Read More »

Apple Patches WebKit Flaws Exploited on Older iPhones

Apple Patches WebKit Flaws Exploited on Older iPhones 30/11/2023 at 23:02 By Ryan Naraine Apple’s security response team warns that flaws CVE-2023-42916 and CVE-2023-42917 were already exploited against versions of iOS before iOS 16.7.1. The post Apple Patches WebKit Flaws Exploited on Older iPhones appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

Apple Patches WebKit Flaws Exploited on Older iPhones Read More »

Scroll to Top