Security News

Remote Code Execution Flaws Patched in Drupal
2018-10-19 09:21

Developers of the Drupal content management system (CMS) have patched several vulnerabilities in the 7 and 8 branches, including serious flaws that can be exploited for remote code execution. read more

VMware Patches Code Execution Flaw in Virtual Graphics Card
2018-10-17 05:04

VMware has patched a critical arbitrary code execution vulnerability in the SVGA virtual graphics card used by its Workstation, ESXi and Fusion products. read more

Code Execution Flaws Found in WECON Industrial Products
2018-10-08 15:38

A significant number of vulnerabilities have been found recently in products from China-based WECON, but the vendor has been slow to release patches. read more

D-Link Patches Code Execution, XSS Flaws in Management Tool
2018-10-05 10:26

D-Link has released patches for several remote code execution and cross-site scripting (XSS) vulnerabilities found by researchers in the company's Central WiFiManager access point management tool....

Foxit PDF Reader Fixes High-Severity Remote Code Execution Flaws
2018-10-02 21:19

Foxit Software has patched over 100 vulnerabilities in its popular Foxit PDF Reader. Many of the bugs tackled by the company include a wide array of high severity remote code execution...

Unpatched Microsoft Zero-Day in JET Allows Remote Code-Execution
2018-09-21 15:09

Microsoft said that it's working on a fix for a zero-day flaw in its JET Database Engine.

Cisco Patches Code Execution in Webex Player
2018-09-20 18:46

Cisco this week addressed vulnerabilities in the Webex Network Recording Player for Advanced Recording Format (ARF) that could allow a remote attacker to execute arbitrary code on a targeted...

Adobe Patches Code Execution, Other Flaws in Acrobat and Reader
2018-09-19 17:17

Updates released on Wednesday by Adobe for the Windows and macOS versions of Acrobat and Reader address a total of 7 vulnerabilities, including a critical flaw that can allow arbitrary code...

Code Execution in Alpine Linux Impacts Containers
2018-09-18 00:33

A security researcher discovered several vulnerabilities in Alpine Linux, a distribution commonly used with Docker, including one that could allow for arbitrary code execution.  Based on musl and...

Zerodium Discloses Flaw That Allows Code Execution in Tor Browser
2018-09-10 20:04

Exploit acquisition firm Zerodium has disclosed a NoScript vulnerability that can be exploited to execute arbitrary JavaScript code in the Tor Browser even if the maximum security level is used. read more