Security News

Code Execution Flaws Found in EZAutomation PLC, HMI Software
2019-09-04 12:29

Researchers discovered that two pieces of software made by U.S.-based industrial automation solutions provider EZAutomation are affected by potentially serious vulnerabilities that can be...

Code Execution Flaw in QEMU Mostly Impacts Development, Test VMs
2019-08-27 06:31

The open source machine emulator QEMU is affected by a vulnerability that can lead to a denial-of-service (DoS) condition or arbitrary code execution, but developers say users should not be too...

VM escape flaw in QEMU allows for arbitrary code execution, denial of service
2019-08-26 15:39

Reassembly of fragmented packets can potentially be exploited against cloud-hosted virtual machine services.

Remote Code Execution Flaws Impact Aspose APIs
2019-08-22 17:53

Vulnerabilities that Cisco Talos security researchers have discovered in various Aspose APIs could allow a remote attacker to execute code on affected machines. read more

Bug in NVIDIA’s Tegra Chipset Opens Door to Malicious Code Execution
2019-07-19 18:42

Researcher creates 'Selfblow' proof-of-concept attack for exploiting a vulnerability that exists in "every single Tegra device released so far".

Mac Zoom Web Server Allows for Remote Code Execution
2019-07-12 15:28

The web server that the Zoom Client installs on Macs can be abused to execute code remotely, security researchers have discovered.  read more

Google Patches Critical Code Execution Bugs in Android Media Framework
2019-07-02 14:44

This week, Google released the July 2019 set of patches for the Android operating system, to address a total of 33 vulnerabilities, including 9 rated Critical. read more

SEMrush Plugs Remote Code Execution Bug in Its SaaS Platform
2019-06-25 22:47

Web analytics firm plugs a hole in its platform that allowed attackers to open a reverse shell that could be used to attack the service.

Flaws in Phoenix Contact Automationworx Allow Code Execution via Malicious Files
2019-06-25 05:57

Several vulnerabilities affecting the Phoenix Contact Automationworx automation software suite can be exploited for remote code execution using specially crafted project files. read more

Oracle Patches Another Remote Code Execution Flaw in WebLogic
2019-06-19 08:54

Oracle on Tuesday announced that it has released emergency patches for a critical remote code execution vulnerability affecting WebLogic Server, a Java EE application server that is part of the...