Security News

Remote Code Execution Flaw Impacts E2fsprogs Filesystem Utility
2020-01-10 16:22

An out-of-bounds write bug in the E2fsprogs filesystem utility could lead to remote code execution, Cisco Talos security researchers reveal. The hash entries for the hash tree are contained within hash entry struct, while the number of hash entries is contained within num array.

Critical Remote Code-Execution Bugs Threaten Global Power Plants
2019-12-12 21:55

Seventeen bugs could be exploited to stop electrical generation and cause malfunctions at power plants.

Code Execution Vulnerabilities Patched in Accusoft ImageGear
2019-12-03 18:44

Vulnerabilities in document and imaging library Accusoft ImageGear could allow attackers to execute code remotely on vulnerable machines, Cisco Talos has discovered. The library, which is used by...

Critical Code Execution Vulnerability Found in GoAhead Web Server
2019-12-03 13:50

Cisco Talos researchers have identified two vulnerabilities in the GoAhead embedded web server, including a critical flaw that can be exploited for remote code execution. read more

WhatsApp Remote Code Execution Triggered by Videos
2019-11-18 21:11

The flaw can be trivially exploited.

WhatsApp Vulnerability Allows Code Execution Via Malicious MP4 File
2019-11-18 13:28

A security vulnerability in WhatsApp that was made public last week could be abused to execute arbitrary code remotely on affected devices. read more

Magento Users Warned of Remote Code Execution Vulnerability
2019-11-12 17:02

Popular ecommerce platform Magento is advising users to apply patches for a remote code execution flaw that could allow unauthenticated attackers to deliver malicious payloads. read more

Amazon Kindle, Embedded Devices Open to Code-Execution
2019-11-07 17:31

Flaws in Das U-Boot affect third-party hardware that uses the universal bootloader as an underlying component.

Critical Remote Code Execution Flaw Found in Open Source rConfig Utility
2019-11-04 16:38

The network configuration management utility has two unpatched critical remote code execution vulnerabilities.

PHP Bug Allows Remote Code-Execution on NGINX Servers
2019-10-28 16:18

CVE-2019-11043 is trivial to exploit -- and a proof of concept is available.