Vulnerability

14-Year-Old CMS Editor Flaw Exploited to Hack Govt & Edu Sites

Hackers have exploited a vulnerability in a 14-year-old Content Management System (CMS) editor, FCKeditor, to launch SEO poisoning attacks against…

1 year ago

Zyxel Firewall Flaw Let Attackers Execute Remote Code

Four new vulnerabilities have been discovered in some of the Zyxel Firewall and access point (AP) versions that are associated…

1 year ago

New DDoS malware Attacking Apache big-data stack, Hadoop, & Druid Servers

Concerning a development for organizations leveraging Apache's big-data solutions, a new variant of the Lucifer DDoS botnet malware targeting Apache…

1 year ago

Beware of New AsukaStealer Steal Browser Passwords & Desktop Screens

An updated version of the ObserverStealer known as AsukaStealer was observed to be advertised as malware-as-a-service that was capable of collecting…

1 year ago

Google Chrome 122 Update Addresses Critical Security Vulnerabilities

Google has recently unveiled Chrome 122, a significant milestone for the widely used web browser. The most recent release, compatible…

1 year ago

VMware Urges to Remove Enhanced EAP Plugin to Stop Auth & Session Hijack Attacks

VMware has issued an urgent advisory to administrators to remove a deprecated authentication plugin vulnerable to severe security threats. The…

1 year ago

SolarWinds ARM Flaw Let Attackers Execute Remote Code

SolarWinds has released their Access Rights Manager version 2023.2.3, in which several vulnerabilities associated with Deserialization and Directory Traversal leading…

1 year ago

ESET Privilege Escalation Flaw Let Attackers Delete Arbitrary Files

ESET, a cybersecurity firm, has released patches for a high-severity vulnerability identified in several Windows-based security products, including consumer, business,…

1 year ago

1000+ JetBrains TeamCity Instances Vulnerable to RCE Bypass Attacks

A critical security vulnerability was detected in TeamCity On-Premises, tagged as CVE-2024-23917, with a CVSS score of 9.8. An unauthenticated…

1 year ago

DNS Server Vulnerability: Single DNS Packet can Bring Down the System

A new flaw has been discovered in DNSSEC, which, when exploited by threat actors, could result in the unavailability of…

1 year ago