Category vulnerabilities

Experts Reveal Exploit for Recently Discovered Windows Vulnerability Actively Being Targeted

Recent disclosures highlight a critical and now-patched security vulnerability affecting Microsoft Windows, which has been actively exploited by threat actors. This exploit allows unauthorized users to gain elevated privileges on compromised systems. Identified as CVE-2023-29336, this flaw has been classified with a severity rating of 7.8, focusing on an elevation…

Read MoreExperts Reveal Exploit for Recently Discovered Windows Vulnerability Actively Being Targeted

Urgent: Major RCE Vulnerability Found in Fortinet FortiGate Firewalls – Update Immediately!

Fortinet Addresses Critical Vulnerability in FortiGate Firewalls Fortinet has issued critical patches to mitigate a serious security vulnerability impacting its FortiGate firewall products. This vulnerability, designated as CVE-2023-27997, allows threat actors to execute remote code under certain conditions, raising significant concerns for organizations using the affected systems. The flaw is…

Read MoreUrgent: Major RCE Vulnerability Found in Fortinet FortiGate Firewalls – Update Immediately!

Researchers Discover Spoofing Vulnerability in Microsoft Visual Studio Installer

Recent security alerts have surfaced regarding a significant vulnerability in the Microsoft Visual Studio installer, which poses risks for users by potentially enabling attackers to impersonate legitimate publishers and distribute harmful extensions. This flaw has been labeled “easily exploitable” by cybersecurity experts at Varonis. Dolev Taler, a researcher from Varonis,…

Read MoreResearchers Discover Spoofing Vulnerability in Microsoft Visual Studio Installer

Serious Vulnerability in FortiOS and FortiProxy May Be Under Attack – Update Your System Immediately!

Fortinet has recently revealed a critical vulnerability affecting its FortiOS and FortiProxy platforms, identified as CVE-2023-27997, with a high CVSS score of 9.2. This flaw involves a heap-based buffer overflow in the SSL-VPN feature of these systems and could be exploited by remote attackers to execute arbitrary code through crafted…

Read MoreSerious Vulnerability in FortiOS and FortiProxy May Be Under Attack – Update Your System Immediately!

Microsoft Issues Updates to Address Critical Vulnerabilities in Windows and Other Software

Microsoft has recently released critical security updates aimed at addressing significant vulnerabilities in its Windows operating system and associated software. This rollout is part of the scheduled Patch Tuesday updates for June 2023. The update addresses a total of 73 vulnerabilities, categorized by severity as follows: six are marked as…

Read MoreMicrosoft Issues Updates to Address Critical Vulnerabilities in Windows and Other Software

Severe Security Flaw Identified in WooCommerce Stripe Gateway Plugin

A critical security vulnerability has been identified within the WooCommerce Stripe Gateway plugin for WordPress, permitting potential unauthorized access to sensitive user information. This flaw, designated as CVE-2023-34000, affects versions up to 7.4.0 and was rectified in version 7.4.1, released on May 30, 2023. The WooCommerce Stripe Gateway plugin, integral…

Read MoreSevere Security Flaw Identified in WooCommerce Stripe Gateway Plugin

Third Vulnerability Discovered in MOVEit Transfer App During Cl0p Ransomware Attack Wave

New Cybersecurity Vulnerability Discovered in MOVEit Transfer Application Progress Software announced on Thursday that a newly identified security vulnerability, tracked as CVE-2023-35708, affects its MOVEit Transfer application. This revelation comes amidst ongoing cyber extortion efforts by the Cl0p ransomware group, targeting various companies utilizing this application. The vulnerability presents an…

Read MoreThird Vulnerability Discovered in MOVEit Transfer App During Cl0p Ransomware Attack Wave

ASUS Issues Patches to Address Critical Security Vulnerabilities in Various Router Models

Taiwan’s ASUS has announced the release of significant firmware updates aimed at resolving nine identified security vulnerabilities affecting a spectrum of its router models. This announcement, made on Monday, underscores the scale of the potential impact, as the flaws span across popular devices within their product line. Among the identified…

Read MoreASUS Issues Patches to Address Critical Security Vulnerabilities in Various Router Models

Zyxel Issues Emergency Security Patches for Critical NAS Device Vulnerability

Zyxel Networks has issued security updates to mitigate a critical vulnerability affecting its line of network-attached storage (NAS) devices. This flaw poses a significant security risk, allowing unauthorized users to execute arbitrary commands on the compromised systems. The vulnerability, identified as CVE-2023-27992 with a CVSS score of 9.8, is classified…

Read MoreZyxel Issues Emergency Security Patches for Critical NAS Device Vulnerability