+44 (0)203 88 020 88

Vulnerabilities

Microsoft Patches two zero-day Exploits

Microsoft’s August patch-Tuesday bundle fixes 120 vulnerabilities including two under active exploitation- one of them over two years old. Weighing in at 120 fixes, the August 2020 Patch Tuesday is the third largest ever released by Microsoft.  Of particular interest are 17 critical updates and two zero-day exploits which are being actively attacked. IE 11 […]

Microsoft Patches two zero-day Exploits Read More »

TeamViewer fixes credential theft vulnerability

TeamViewer Gmbh have released a patch for their Windows Desktop client to fix a credential leaking vulnerability which could allow a malicious webpage to obtain the hashed NTLM credentials of the active Windows user account. A simple flaw (CVE-2020-13699) in the way the TeamViewer desktop client handles custom URI handlers means a malicious webpage can

TeamViewer fixes credential theft vulnerability Read More »

Critical Microsoft DNS RCE Vulnerability

Microsoft has released a patch to resolve a critical remote code execution vulnerability that has lived in the DNS server code for 17 years. A blog post from the Microsoft Security Response Centre states: Today we released an update for CVE-2020-1350, a Critical Remote Code Execution (RCE) vulnerability in Windows DNS Server that is classified as a ‘wormable’ vulnerability and has a CVSS base score of 10.0. This issue results from a flaw

Critical Microsoft DNS RCE Vulnerability Read More »

F5 BIG-IP hit by Critical RCE Vulnerability

Enterprise security provider F5 has disclosed details of a critical vulnerability affecting their BIG-IP systems used by governments and global enterprises. The flaw in the Traffic Management User Interface of the BIG-IP Application Delivery Controller allows an unauthenticated attacker to perform remote code execution.  The vulnerability ( CVE-2020-5902) is rated the top CVSS rating of 10/10

F5 BIG-IP hit by Critical RCE Vulnerability Read More »

Netgear SOHO Router Vulnerabilities

A Zero-Day Remote Code Execution vulnerability affects 79 different Netgear routers With the significant increase in home-working due to the COVID pandemic, the security of home workers’ connectivity is under scrutiny.  Security researchers have detailed a serious vulnerability in the firmware of many Netgear routers popular in small and home office set-ups. The vulnerability exists

Netgear SOHO Router Vulnerabilities Read More »

VideoLAN patches RCE vulnerability in VLC

VideoLAN has released a patch for their popular VLC Media player software to resolve a remote code execution vulnerability The VLC open source media player is widely used in domestic and enterprise environments for playback of all kinds of video files and digital signage applications. In a security bulletin, the developer state that: If successful, a malicious

VideoLAN patches RCE vulnerability in VLC Read More »

Scroll to Top