Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2021-45819: Vulnerability Wordline – HanseSecure

Wordline HIDCCEMonitorSVC before v5.2.4.3 contains an unquoted service path which allows attackers to escalate privileges to the system level.

CVE
#vulnerability#microsoft

CVE

pending

Vulnerable Software

HIDCCEMonitorSVC Version <= 5.2.4.3

A Unquoted service path in HIDCCEMonitorSVC software allows a local attacker to potentially escalate privileges to system level.

Timeline

  • 29.10.2021 Vendor informed
  • 10.11.2021 Vendor confirms the vulnerability and informs HanseSecure that the vulnerability will be patched in the next version.
  • 21.12.2020 Disclosure

References:

  • Hall of Fame Wordline
  • Seucrity Advisory Wordline: SA_WL_IDC_202111_001

During my last assessment i discovered a strange behaviour of Microsoft’s SmartScreen feature.In general this security feature should block the execution of […]

CVE CVE-2021-25269 Vulnerable software HitmanPro.Alert Agent (Sophos Suite) before 3.8.1.504 Vulnerability An insufficient configuration of the service allows an extension of the […]

CVE CVE-2021-41428 Vulnerable software Both the Update Manager up to version 5.8.0.2300 and DFL up to version 12.5.1001.5 are affected by this […]

CVE CVE-2021-26750 Vulnerable Software Agent (<=1.16.11) for Panda Adaptive Defense 360 <= Version 8.0.17 Vulnerability The Agent for Panda Adaptive Defense 360 […]

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907