Apache, Dirty Cow, & Edge – Paul’s Security Weekly #582

Cisco accidentally released Dirty Cow exploit code, Apache Struts Vulnerabilities, Zero Day exploit published for VM Escape flaw, Spam spewing IoT botnet infects 100,000 routers, and some of these vibrating apps turn your phone into a sex toy! Paul&#82… Continue reading Apache, Dirty Cow, & Edge – Paul’s Security Weekly #582

VU#112992: Apache Struts 2 framework REST plugin insecurely deserializes untrusted XML data

Apache Struts 2 framework,versions 2.5 to 2.5.12,with REST plugin insecurely deserializes untrusted XML data. A remote,unauthenticated attacker can leverage this vulnerability to execute arbitrary code in the context of the Struts application. Continue reading VU#112992: Apache Struts 2 framework REST plugin insecurely deserializes untrusted XML data