Foxit PDF Reader Fixes High-Severity Remote Code Execution Flaws

Foxit Software has patched over 100 vulnerabilities in its popular Foxit PDF Reader. Many of the bugs tackled by the company include a wide array of high severity remote code execution vulnerabilities. Foxit on Friday released fixes for Foxit Reader 9…. Continue reading Foxit PDF Reader Fixes High-Severity Remote Code Execution Flaws

CVE-2018-10115 Affects All 7-Zip Versions Prior to 18.05

CVE-2018-10115 is the identifier of the latest security vulnerability discovered in 7-Zip that affects all the versions of the program prior to 18.05. More about 7-Zip 7-Zip is a free open-source archiver with a high compression ratio. The program is….. Continue reading CVE-2018-10115 Affects All 7-Zip Versions Prior to 18.05

HP Patches High-Risk Vulnerability in Business Printers

HP released security firmware updates this week for dozens of printers, including enterprise models, to fix a high-risk vulnerability that could allow attackers to compromise the devices. The vulnerability, tracked as CVE-2017-2750, stems from a failur… Continue reading HP Patches High-Risk Vulnerability in Business Printers

Using LabVIEW? Unpatched Flaw Allows Hackers to Hijack Your Computer

If you’re an engineer and use LabVIEW software to design machines or industrial equipments, you should be very suspicious while opening any VI (virtual instrument) file.

LabVIEW, developed by American company National Instruments, is a visual programm… Continue reading Using LabVIEW? Unpatched Flaw Allows Hackers to Hijack Your Computer

Two Critical Zero-Day Flaws Disclosed in Foxit PDF Reader

Are you using Foxit PDF Reader? If yes, then you need to watch your back.

Security researchers have discovered two critical zero-day security vulnerabilities in Foxit Reader software that could allow attackers to execute arbitrary code on a targeted c… Continue reading Two Critical Zero-Day Flaws Disclosed in Foxit PDF Reader

Critical RCE Vulnerability Found in Cisco WebEx Extensions, Again — Patch Now!

A highly critical vulnerability has been discovered in the Cisco Systems’ WebEx browser extension for Chrome and Firefox, for the second time in this year, which could allow attackers to remotely execute malicious code on a victim’s computer.

Cisco WebEx is a popular communication tool for online events, including meetings, webinars and video conferences that help users connect and

Continue reading Critical RCE Vulnerability Found in Cisco WebEx Extensions, Again — Patch Now!

VU#219739: Portrait Displays SDK applications are vulnerable to arbitrary code execution and privilege escalation

Applications developed using the Portrait Display SDK,versions 2.30 through 2.34,default to insecure configurations which allow arbitrary code execution. Continue reading VU#219739: Portrait Displays SDK applications are vulnerable to arbitrary code execution and privilege escalation

Arbitrary Code Execution is in Another Castle!

When one buys a computer, it should be expected that the owner can run any code on it that they want. Often this isn’t the case, though, as most modern devices are sold with locked bootloaders or worse. Older technology is a little bit easier to handle, however, but arbitrary code execution on something like an original Nintendo still involves quite a lot of legwork, as [Retro Game Mechanics Explained] shows with the inner workings of Super Mario Brothers 3.

While this hack doesn’t permanently modify the Nintendo itself, it does allow for arbitrary code execution within the game, which …read more

Continue reading Arbitrary Code Execution is in Another Castle!