+44 (0)203 88 020 88

Vulnerabilities

Critical Vulnerability in HP Enterprise Printers

HP Enterprise LaserJet and HP LaserJet Managed printers that use FutureSmart version 5.6 and have enabled IPsec could be vulnerable to a disclosed, unpatched, critical severity vulnerability that HP have warned will take 90 days to remediate. A security bulletin was released by HP this week to inform customers of this vulnerability which includes an […]

Critical Vulnerability in HP Enterprise Printers Read More »

Veeam Vulnerability Exploit Code Released

Proof of concept (PoC) code has been released for a cross-platform exploit that can be performed on unpatched Veeam Backup & Replication (VBR) software. Veeam are a data security organisation whose backup and recovery software is used as both on-premises and cloud-based data protection solutions. Security updates to patch the exploitable vulnerability were released earlier

Veeam Vulnerability Exploit Code Released Read More »

Apple Release Critical MacOS Vulnerability Updates

Security updates for macOS Ventura, macOS Monterey, and macOS Big Sur have been released to address the security vulnerabilities found in these systems. Four critical severity vulnerabilities are included in these updates, all with a CVSS base score of 9.8/10. Not a lot of information is currently available about these flaws, as Apple doesn’t disclose

Apple Release Critical MacOS Vulnerability Updates Read More »

Google Pixel Markup Flaw Restores Edited Images

A vulnerability in the Google Pixel Markup tool can be used to recover redacted and edited screenshots, leading to sensitive information disclosure. Security researchers Simon Aarons and David Buchanan who discovered the exploit for this vulnerability dubbed it the aCropalypse flaw which signifies the ability to restore cropped and edited images to their original state

Google Pixel Markup Flaw Restores Edited Images Read More »

Adobe ColdFusion Vulnerability Actively Exploited

A critical arbitrary code execution vulnerability is being actively exploited in unpatched Adobe ColdFusion versions 2018 and 2021. A security bulletin was released by Adobe to inform users of this actively exploited vulnerability, along with two other vulnerabilities patched in the same update, a critical severity deserialisation flaw and a memory leak path traversal vulnerability.

Adobe ColdFusion Vulnerability Actively Exploited Read More »

Two Zero-Day Vulnerabilities Fixed in Patch Tuesday

A total of 83 vulnerabilities have been addressed in this month’s patch Tuesday security updates from Microsoft, including two zero-day flaws, and nine vulnerabilities rated as critical severity. Four of these critical severity vulnerabilities specifically affecting Windows 11, and one affecting Microsoft Office, have been included in Microsoft Defender’s default new vulnerabilities notifications sent to

Two Zero-Day Vulnerabilities Fixed in Patch Tuesday Read More »

Flaws in Windows 11 Security Hardware TPM 2.0

Two out-of-bounds buffer overflow vulnerabilities have been found in the TPM 2.0 system hardware used across all Windows 11 devices. A TPM (Trusted Platform Module) is a processor used for hardware-based cryptographic operations, to secure encryption keys, and protect the boot process by defending against malicious tampering. Microsoft made it a requirement for PCs to

Flaws in Windows 11 Security Hardware TPM 2.0 Read More »

Android Update Fixes Critical Vulnerabilities

A new security update has been released for Android devices, patching a total of 60 vulnerabilities across two security patch levels, including 4 critical severity flaws. The March Android Security Bulletin lists each vulnerability, it’s type, and the severity, however detailed information about each flaw has not yet been released to allow users to apply

Android Update Fixes Critical Vulnerabilities Read More »

Scroll to Top