Security News

Cisco Patches Two Critical RCE Bugs in IOS XE Software
2018-03-28 21:35

Cisco releases 22 patches as part of its semiannual Cisco IOS and IOS XE software security advisory.

Triggered via malicious files, flaws in Cisco WebEx players can lead to RCE
2017-11-30 15:04

Cisco has plugged six security holes in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files that could be exploited by remote attackers...

Exim Internet Mailer Found Vulnerable to RCE And DoS Bugs; Patch Now
2017-11-27 01:14

A security researcher has discovered and publicly disclosed two critical vulnerabilities in the popular Internet mail message transfer agent Exim, one of which could allow a remote attacker to...

Multiple Vulnerabilities in LibXL Library Open Door to RCE Attacks
2017-11-17 21:50

Hackers using a specially crafted XLS files can trigger several remote code execution vulnerabilities in the LibXL library.

Google Warns of DoS and RCE Bugs in Dnsmasq
2017-10-03 17:16

A domain name system server implementation is at risk of remote code execution, information exposure and denial-of-service attacks after a seven vulnerability were disclosed by Google and patched...

Adobe Patches Two Critical RCE Vulnerabilities in Flash Player
2017-09-12 22:28

Adobe may kill Flash Player by the end of 2020, but until then, the company would not stop providing security updates to the buggy software. As part of its monthly security updates, Adobe has...

Two Foxit Reader RCE zero-day vulnerabilities disclosed (Help Net Security)
2017-08-18 18:44

Trend Micro’s Zero Day Initiative has released details about two remote code execution zero-day flaws affecting popular freemium PDF tool Foxit Reader. The first one (CVE-2017-10951) is a command...

Critical RCE Vulnerability Found in Cisco WebEx Extensions, Again — Patch Now! (The Hackers News)
2017-07-17 10:30

A highly critical vulnerability has been discovered in the Cisco Systems’ WebEx browser extension for Chrome and Firefox, for the second time in this year, which could allow attackers to remotely...

Google researcher uncovers another RCE in Microsoft Malware Protection Engine (Help Net Security)
2017-06-27 19:02

Google Project Zero researcher Tavis Ormandy has unearthed yet another critical remote code execution vulnerability affecting the Microsoft Malware Protection Engine, which powers a number of the...

Another RCE Vulnerability Patched in Microsoft Malware Protection Engine (Threatpost)
2017-06-26 17:54

Google Project Zero’s Tavis Ormandy found another remote code execution vulnerability in the Microsoft Malware Protection Engine, the third since early May.