Advertisement
Top

Tag: flaws


Vulnerabilities

Hundreds of HP inkjet printer models vulnerable to critical remote code execution flaws

August 6, 2018

Via: CSO Online

Two nasty security vulnerabilities make hundreds of HP Inkjet printers vulnerable to remote code execution. HP recommended applying firmware update patches “as soon as possible.” Almost immediately after announcing a “first of its kind” bug bounty program for printers, offering […]


Vulnerabilities

Cisco Finds Serious Flaws in Policy Suite, SD-WAN Products

July 19, 2018

Via: Security Week

Cisco informed customers on Wednesday that it has found and patched over a dozen critical and high severity vulnerabilities in its Policy Suite, SD-WAN, WebEx and Nexus products. The networking giant reported discovering four critical flaws in Policy Suite during […]


Mobile security

Android’s March 2018 Patches Fix Critical, High Risk Flaws

March 6, 2018

Via: Security Week

Google has released its March 2018 set of security updates for Android to address numerous Critical and High severity vulnerabilities in the popular mobile operating system. The majority of the Critical vulnerabilities addressed this month could allow an attacker to […]


Vulnerabilities

Multiple Flaws Patched in WD MyCloud Device Firmware

February 5, 2018

Via: Security Week

Vulnerabilities that could allow unauthorized file deletion, unauthorized command execution and authentication bypass impacted WD (Western Digital) MyCloud devices, Trustwave reports. The vulnerabilities were discovered in the MyCloud personal storage device and were reported to Western Digital last year. The […]


Cyber-crime, Security, Vulnerabilities

WMWare addressed severe Code Execution vulnerabilities in several products

December 21, 2017

Via: Security Affairs

VMware has released security updates to address four vulnerabilities in its ESXi, vCenter Server Appliance (vCSA), Workstation and Fusion products. The flaws were addressed with the release of six patches for ESXi, version 12.5.8 of Workstation, version 8.5.9 of Fusion, and […]


Vulnerabilities

Patch for macOS Root Access Flaw Breaks File Sharing

November 30, 2017

Via: Security Week

The patch released by Apple on Wednesday for a critical root access vulnerability affecting macOS High Sierra appears to break the operating system’s file sharing functionality in some cases. The company has provided an easy fix for affected users. The […]


Mobile security, Vulnerabilities

Google Patches 81 Android Vulnerabilities With September 2017 Updates

September 7, 2017

Via: Security Week

A total of 81 security vulnerabilities have been addressed in this month’s set of security patches for the Android platform. 13 of the flaws were rated Critical severity. The security bulletin has two security patch levels, each focused on addressing […]


Vulnerabilities

Western Digital My Cloud NAS devices wide open to attackers

March 9, 2017

Via: Help Net Security

Western Digital My Cloud NAS devices have again been found wanting in the security department, as two set of researchers have revealed a number of serious flaws in the devices’ firmware. WD My Cloud is meant to be a private […]


Network security

Poor robot security could lead to ‘Skynet’ nightmare, warn researchers

March 3, 2017

Via: Naked Security

The robot industry has become better at building eye-catching demonstration machines than securing them, consultancy IOActive has concluded after pen-testing some famous examples. After a process described as “not even a deep, extensive security audit”, Hacking Robots Before Skynet uncovered 50 vulnerabilities […]


Hacker, Vulnerabilities

Hacking printers exploiting Cross-site printing (XSP) attacks

February 2, 2017

Via: Security Affairs

Popular printer models manufactured by Dell, Brother, Konica, Samsung, HP, and Lexmark are affected by security vulnerabilities that could be exploited by hackers to steal passwords, steal information from the print jobs, and shut down the devices. The discovery was made by researchers […]


Vulnerabilities, Wireless security

Hundreds of thousands, if not over a million Netgear routers open to hack

February 1, 2017

Via: Secuirty Affairs

An impressive number of Netgear routers is affected by two flaws that can lead to password disclosure. It has been estimated that hundreds of thousand devices, potentially more than one million Netgear routers, could be hacked, by both a local or a remote attacker. […]


Editorial, Vulnerabilities

Another day, another demo exploit – this time, Chrome is the tattletale (autofill vulnerabilities)

January 18, 2017

Via: Russel Edwards

Unfortunately, often in the digital environment what makes things faster and easier is riddled with cyber security risks. This time, it is about the autofill feature. Finish specialist Viljami Kuosmanen illustrated how easy it is for third parties to get […]


Vulnerabilities

Flaws Allow Remote Hacking of Moxa MiiNePort Devices

December 13, 2016

Via: Security Week

Flaws affecting Moxa’s MiiNePort embedded serial device servers can be exploited remotely to gain control of vulnerable systems. The vendor has released firmware updates to address the security holes. ICS-CERT informed organizations last week that MiiNePort E1, E2 and E3 […]


Vulnerabilities

Chrome bug triggered errors on websites using Symantec SSL certificates

December 6, 2016

Via: CSO Online

If you’ve encountered errors over the past month when trying to access HTTPS-enabled websites on your computer or Android phone, it might have been due to a bug in Chrome. The bug affected the validation for some SSL certificates issued […]


Vulnerabilities

Most businesses vulnerable to cyber attacks through firmware, study shows

October 19, 2016

Via: Computer Weekly

Most businesses do not have comprehensive programmes to tackle firmware security risks, according to a report by global business technology and cyber security association Isaca. This is despite the fact that organisations are increasingly aware of the growing importance of […]


Mobile security

Mobile security stripped bare: Why we need to start again

September 29, 2016

Via: Help Net Security

We’re all familiar with the cartoon image of a character stopping a water leak by plugging a finger into the hole, only for another leak to start, needing another finger, and so on, until the character is soaked by a […]


Vulnerabilities

One-Third of ICS Flaws Are Zero-Days When Disclosed: Report

August 4, 2016

Via: Security Week

More than 1,500 vulnerabilities specific to industrial control systems (ICS) have been disclosed in the past 15 years and many of them did not have vendor patches when their existence was made public, according to a new report from FireEye. […]


Vulnerabilities

Security Holes Exposed In Smart Lighting System

July 27, 2016

Via: Dark Reading

Sylvania Osram Lightify vulnerabilities could allow an attacker to turn out the lights or ultimately infiltrate the corporate network. Researchers at Rapid7 have uncovered flaws in the Home and Pro versions of Sylvania Osram Lightify products that could allow attackers […]


Vulnerabilities, Wireless security

Critical Flaws Found in Dell SonicWALL Product

July 22, 2016

Via: Security Week

Managed security risk assessment provider Digital Defense has identified several vulnerabilities in the Dell SonicWALL Global Management System (GMS), a platform that allows organizations to centrally manage their SonicWALL solutions. The vendor has released a hotfix to patch the issues. […]


Malware, Vulnerabilities

Google Fixes 48 Bugs, Sandbox Escape, in Chrome

July 22, 2016

Via: Threat Post

Google has patched a high-risk vulnerability in its Chrome browser that allows an attacker to escape the Chrome sandbox. That vulnerability is one of 48 bugs fixed in version 52 of Chrome released Wednesday. Four dozen of those flaws are […]