Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

libcurl Remote Code Execution Vulnerability

A vulnerability has been identified in libcurl, which can be exploited by a remote user to cause denial of service conditions and obtain sensitive information on the target system.
Last Update Date: 25 Oct 2017 09:09 Release Date: 25 Oct 2017 3726 Views

RISK: High Risk

High Risk

CrySIS/Dharma-variant .arena Ransomware Encrypts Victim Data

HKCERT has received a number of infection reports of the Crysis/Dharma ransomware variant, mostly by taking total control of the server through the Remote Desktop Service (RDP) on Windows platform.   Impacts The ransomware encrypts files on victims’ computers and adds an ID...
Last Update Date: 24 Oct 2017 11:52 Release Date: 24 Oct 2017 5751 Views

RISK: Medium Risk

Medium Risk

Cisco Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco Products, which could be exploited by attackers to conduct cross-site scripting attack, perform remote code execution, trigger denial of service conditions, obtain potentially sensitive information and bypass security restriction on the target system.
Last Update Date: 20 Oct 2017 09:40 Release Date: 20 Oct 2017 3669 Views

RISK: Medium Risk

Medium Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by a remote attacker to take control of an affected system.
Last Update Date: 19 Oct 2017 10:23 Release Date: 19 Oct 2017 3538 Views

RISK: High Risk

High Risk

WiFi Protected Access II (WPA2) Multiple Vulnerabilities (KRACK)

Multiple vulnerabilities were identified in WiFi Protected Access II (WPA2) which could allow an attacker to conduct a key reinstallation attack (KRACK) on targeted devices that use WiFi. An attacker could decrypt the data or even conduct data tampering in the wireless connection.   ...
Last Update Date: 18 Oct 2017 Release Date: 17 Oct 2017 5871 Views

RISK: Medium Risk

Medium Risk

Oracle Security Update (Oct 2017)

Oracle has released Oct 2017 security update for their products:   Vulnerable Product Severity Impacts Notes Details (including CVE) Database Moderately Critical Security Restriction BypassInformation DisclosureRemote Code ExecutionData Manipulation   DB (2017-10) Java SE Moderately Critical ...
Last Update Date: 18 Oct 2017 09:36 Release Date: 18 Oct 2017 4083 Views

RISK: High Risk

High Risk

Adobe Flash Player Remote Code Execution Vulnerability

A vulnerability was identified in Adobe Flash Player. A remote attacker could execute arbitrary code on the target system.
Last Update Date: 17 Oct 2017 11:10 Release Date: 17 Oct 2017 3816 Views

RISK: Medium Risk

Medium Risk

Mozilla Thunderbird Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Thunderbird, which could be exploited by attackers to conduct cross-site scripting attack, trigger denial of service conditions and spoofing on the target system.
Last Update Date: 12 Oct 2017 09:57 Release Date: 12 Oct 2017 3583 Views

RISK: Extremely High Risk

Extremely High Risk

Microsoft Monthly Security Update (Oct 2017)

Microsoft has released monthly security update for their products:   Vulnerable Product Severity Impacts Notes Details (including CVE) Microsoft Office Extremely Critical Security Restriction Bypass Elevation of Privilege Information Disclosure Remote Code Execution Publicly Disclosed;Exploited in...
Last Update Date: 11 Oct 2017 09:41 Release Date: 11 Oct 2017 4908 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows WAV File Denial of Service Vulnerability

A vulnerability was identified in Microsoft Windows, which allows remote attackers to cause a denial-of-service condition by processing WAV audo files. Note: No patch is currently available.
Last Update Date: 10 Oct 2017 09:23 Release Date: 10 Oct 2017 3619 Views