+44 (0)203 88 020 88

Menu

Search

vulnerability management

Final Windows 7 Patches and critical security bug fixed

The last ever Windows 7 Patch Tuesday update also includes a fix to a long standing bug in the Windows cryptographic library (CryptoAPI) which could allow attackers to spoof digital certificates and conduct man-in-the-middle attacks. Microsoft has long warned that January 2020 was the end of support for Windows 7, meaning that this is expected […]

Final Windows 7 Patches and critical security bug fixed Read More »

SQLite remote code execution vulnerability

A remote code execution vulnerability has been discovered in SQLite, dubbed Magellan 2.0 by the research team that discovered it. Tencent’s Blade security research team has published some details of a remote code execution vulnerability that affects all version of SQLite prior to the latest patch issued on 13 December 2019.   SQLite is a widely used

SQLite remote code execution vulnerability Read More »

Critical Oracle EBS vulnerabilities remain unpatched

Flaws in the Oracle Thin Client Framework API used in the General Ledger and Work in Progress modules of Oracle EBS leave thousands of firms vulnerable to financial fraud. Specialist Oracle security firm Onapsis has released a summary of exploits based on these vulnerabilities which they name Payday. One proof of concept demonstration shows how an

Critical Oracle EBS vulnerabilities remain unpatched Read More »

July patch Tuesday fixes RCE in DHCP

Microsoft’s July Patch Tuesday updates resolve 77 vulnerabilities in Windows software, including two zero-day vulnerabilities which are being actively exploited and remote code execution vulnerabilities in DHCP Server and MS SQL Server. DHCP Server RCE vulnerability If you have your Microsoft DHCP server configured with a failover server, an attacker can send a specially crafted

July patch Tuesday fixes RCE in DHCP Read More »

0

No products in the basket.

No products in the basket.