Security News

Critical RCE flaw in ATM security software found (Help Net Security)
2017-05-04 20:45

Researchers from Positive Technologies have unearthed a critical vulnerability (CVE-2017-6968) in Checker ATM Security by Spanish corporate group GMV Innovating Solutions. The software and the...

WordPress admins, take note: RCE and password reset vulnerabilities revealed (Help Net Security)
2017-05-04 18:59

Independent security researcher Dawid Golunski has released a proof-of-concept exploit code for an unauthenticated remote code execution vulnerability in WordPress 4.6 (CVE-2016-10033), and...

VMWare Fixes Critical RCE in vCenter Server (Threatpost)
2017-04-17 16:05

VMware patched a critical vulnerability in its vCenter Server platform late last week that could have let an attacker execute arbitrary code in some scenarios.

LastPass Fixes Ormandy RCE Bug; Two Outstanding Vulnerabilities Remain (Threatpost)
2017-03-22 15:08

LastPass has reportedly fixed one of three bugs in the password manager discovered by Google research Tavis Ormandy in the last week.

The latest on the critical RCE Cisco WebEx extension vulnerability (Help Net Security)
2017-01-30 15:14

Since Google bug hunter Tavis Ormandy revealed the existence of a remotely exploitable code execution flaw in the Cisco WebEx extension for Google Chrome last week, Cisco has pushed out several...

New RCE Flaws Found in Samsung Smartcam (Threatpost)
2017-01-17 21:54

Samsung Smartcam devices are vulnerable to remote takeover via a malicious firmware update, researchers with the former GTVHacker group said.

Nagios Core Patches Root, RCE Vulnerabilities (Threatpost)
2016-12-16 16:00

Nagios Core has been updated to take care of two critical vulnerabilities that can be pinned together to attack servers hosting the open source IT infrastructure monitoring software.