Aggregator
CVE-2016-7152 | Microsoft Internet Explorer HTTPS HEIST information disclosure (Nessus ID 261330 / BID-92769)
CVE-2016-2338 | Ruby Tags Array Length Psych::Emitter heap-based overflow (DLA 2158-1 / Nessus ID 261341)
CVE-2021-20282 | Moodle up to 3.5.16/3.8.7/3.9.4/3.10.1 Verification authorization (Nessus ID 261349)
CVE-2021-43566 | Samba up to 4.13.15 SMB1/NFS access control (Nessus ID 261345 / WID-SEC-2023-2979)
CVE-2021-20283 | Moodle up to 3.5.16/3.8.7/3.9.4/3.10.1 Web Service authorization (Nessus ID 261351)
CVE-2019-17371 | libpng 1.6.37 png_malloc_warn/png_create_info_struct release of resource (Issue 307 / Nessus ID 261352)
Progress OpenEdge AdminServer Vulnerability Let Attackers Execute Remote Code
A critical security vulnerability has been discovered in Progress OpenEdge, a platform for developing and deploying business applications. The flaw, identified as CVE-2025-7388, allows for remote code execution (RCE) and affects multiple versions of the software, potentially enabling attackers to execute arbitrary commands with elevated system privileges. The vulnerability resides in the AdminServer component of […]
The post Progress OpenEdge AdminServer Vulnerability Let Attackers Execute Remote Code appeared first on Cyber Security News.
Kazakh oil giant denies cyberattack, says incident was 'planned' phishing drill
Играть в прятки с ИИ больше не получится. Anthropic изменила правила и будет смотреть, кто на самом деле платит
Randall Munroe’s XKCD ‘Cesium’
via the comic artistry and dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Cesium’ appeared first on Security Boulevard.
Windows Defender Vulnerability Allows Service Hijacking and Disablement via Symbolic Link Attack
A severe vulnerability in Windows Defender’s update process allows attackers with administrator privileges to disable the security service and manipulate its core files. The technique, which leverages a flaw in how Defender selects its execution folder, can be carried out using tools already available on the Windows operating system. The vulnerability was detailed by Zero […]
The post Windows Defender Vulnerability Allows Service Hijacking and Disablement via Symbolic Link Attack appeared first on Cyber Security News.
Supreme Court blocks FTC commissioner Slaughter’s reinstatement
As some observers predicted, Democratic commissioners are racking up lower court victories, but the highest court in the country appears skeptical.
The post Supreme Court blocks FTC commissioner Slaughter’s reinstatement appeared first on CyberScoop.