Security News

Yi IoT Home Camera Riddled with Code-Execution Vulnerabilities
2018-11-01 21:50

Five of them allow remote compromise of the IoT gadgets, so attackers can intercept video feeds and more.

Logical Bug in Microsoft Word's 'Online Video' Allows Code Execution
2018-10-29 14:00

Microsoft Office is impacted by a logical bug that allows an attacker to abuse the “online video” feature in Word to execute malicious code, Cymulate security researchers warn. read more

Remote Code Execution Flaws Patched in Drupal
2018-10-19 09:21

Developers of the Drupal content management system (CMS) have patched several vulnerabilities in the 7 and 8 branches, including serious flaws that can be exploited for remote code execution. read more

VMware Patches Code Execution Flaw in Virtual Graphics Card
2018-10-17 05:04

VMware has patched a critical arbitrary code execution vulnerability in the SVGA virtual graphics card used by its Workstation, ESXi and Fusion products. read more

Code Execution Flaws Found in WECON Industrial Products
2018-10-08 15:38

A significant number of vulnerabilities have been found recently in products from China-based WECON, but the vendor has been slow to release patches. read more

D-Link Patches Code Execution, XSS Flaws in Management Tool
2018-10-05 10:26

D-Link has released patches for several remote code execution and cross-site scripting (XSS) vulnerabilities found by researchers in the company's Central WiFiManager access point management tool....

Foxit PDF Reader Fixes High-Severity Remote Code Execution Flaws
2018-10-02 21:19

Foxit Software has patched over 100 vulnerabilities in its popular Foxit PDF Reader. Many of the bugs tackled by the company include a wide array of high severity remote code execution...

Unpatched Microsoft Zero-Day in JET Allows Remote Code-Execution
2018-09-21 15:09

Microsoft said that it's working on a fix for a zero-day flaw in its JET Database Engine.

Cisco Patches Code Execution in Webex Player
2018-09-20 18:46

Cisco this week addressed vulnerabilities in the Webex Network Recording Player for Advanced Recording Format (ARF) that could allow a remote attacker to execute arbitrary code on a targeted...

Adobe Patches Code Execution, Other Flaws in Acrobat and Reader
2018-09-19 17:17

Updates released on Wednesday by Adobe for the Windows and macOS versions of Acrobat and Reader address a total of 7 vulnerabilities, including a critical flaw that can allow arbitrary code...