Oracle Rushes Emergency Fix for Critical WebLogic Server Flaw

The remote code-execution flaw (CVE-2020-14750) is low-complexity and requires no user interaction to exploit. Continue reading Oracle Rushes Emergency Fix for Critical WebLogic Server Flaw

WordPress Patches 3-Year-Old High-Severity RCE Bug

In all, WordPress patched 10 security bugs as part of the release of version 5.5.2 of its web publishing software. Continue reading WordPress Patches 3-Year-Old High-Severity RCE Bug

WordPress Patches 3-Year-Old High-Severity RCE Bug

In all, WordPress patched 10 security bugs as part of the release of version 5.5.2 of its web publishing software. Continue reading WordPress Patches 3-Year-Old High-Severity RCE Bug

Microsoft Fixes RCE Flaws in Out-of-Band Windows Update

The two important-severity flaws in Microsoft Windows Codecs Library and Visual Studio Code could enable remote code execution. Continue reading Microsoft Fixes RCE Flaws in Out-of-Band Windows Update

BleedingTooth Bluetooth vulnerability allows RCE in Linux devices

By Sudais Asif
Bluetooth has been for long, one of the most used communication protocols due to the ease it offers but that can be vulnerable as well.
This is a post from HackRead.com Read the original post: BleedingTooth Bluetooth vulnerability allows… Continue reading BleedingTooth Bluetooth vulnerability allows RCE in Linux devices

Critical SonicWall VPN Portal Bug Allows DoS, Worming RCE

The CVE-2020-5135 stack-based buffer overflow security vulnerability is trivial to exploit, without logging in. Continue reading Critical SonicWall VPN Portal Bug Allows DoS, Worming RCE

Instagram photo flaw could have helped malicious hackers spy via users’ cameras and microphones

A critical vulnerability in Instagram’s Android and iOS apps could have allowed remote attackers to run malicious code, snoop on unsuspecting users, and hijack control of smartphone cameras and microphones. The security hole, which has been patched by … Continue reading Instagram photo flaw could have helped malicious hackers spy via users’ cameras and microphones

Zeek in it’s sweet spot: Detecting F5’s Big-IP CVE10 (CVE-2020-5902)

By Ben Reardon, Corelight Security Researcher Having a CVE 10 unauthenticated Remote Code Execution vulnerability on a central load balancing device? That’s bad… Not being able to detect when a threat actor attempts and/or succeeds in compr… Continue reading Zeek in it’s sweet spot: Detecting F5’s Big-IP CVE10 (CVE-2020-5902)