Security
Headlines
HeadlinesLatestCVEs

Tag

#rce

Hackers Actively Exploiting Citrix ADC and Gateway Zero-Day Vulnerability

The U.S. National Security Agency (NSA) on Tuesday said a threat actor tracked as APT5 has been actively exploiting a zero-day flaw in Citrix Application Delivery Controller (ADC) and Gateway to take over affected systems. The critical remote code execution vulnerability, identified as CVE-2022-27518, could allow an unauthenticated attacker to execute commands remotely on vulnerable devices and

The Hacker News
#vulnerability#web#ios#mac#microsoft#git#rce#vmware#auth#zero_day#ssl#The Hacker News
CVE-2022-37155: [Suggested description] RCE in SPIP 3.1.13 through 4.1.2 allows remote auth - Pastebin.com

RCE in SPIP 3.1.13 through 4.1.2 allows remote authenticated users to execute arbitrary code via a GET parameter

Microsoft Squashes Zero-Day, Actively Exploited Bugs in Dec. Update

Here's what you need to patch now, including six critical updates for Microsoft's final Patch Tuesday of the year.

GHSA-9qcm-fqj9-93m4: .NET Framework Remote Code Execution Vulnerability.

.NET Framework Remote Code Execution Vulnerability. Dupe of GHSA-2c7v-qcjp-4mg2

CVE-2022-44702

Windows Terminal Remote Code Execution Vulnerability

CVE-2022-47211

Microsoft Office Graphics Remote Code Execution Vulnerability

CVE-2022-44693

Microsoft SharePoint Server Remote Code Execution Vulnerability

CVE-2022-44692

Microsoft Office Graphics Remote Code Execution Vulnerability

CVE-2022-44695

Microsoft Office Visio Remote Code Execution Vulnerability

CVE-2022-44694

Microsoft Office Visio Remote Code Execution Vulnerability