Security
Headlines
HeadlinesLatestCVEs

Tag

#rce

Microsoft Quashes Actively Exploited Zero-Day, Wormable Critical Bugs

In Microsoft's lightest Patch Tuesday update of the year so far, several security vulnerabilities stand out as must-patch, researchers warn.

DARKReading
#sql#vulnerability#web#mac#windows#microsoft#linux#dos#rce#auth#zero_day#chrome
CVE-2022-20399: Android Security Bulletin—September 2022  |  Android Open Source Project

In the SEPolicy configuration of system apps, there is a possible access to the 'ip' utility due to an insecure default value. This could lead to local information disclosure of network data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-219808546References: Upstream kernel

CVE-2022-37963

Microsoft Office Visio Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-38010.

CVE-2022-37962

Microsoft PowerPoint Remote Code Execution Vulnerability.

CVE-2022-35823

Microsoft SharePoint Remote Code Execution Vulnerability.

CVE-2022-38019

AV1 Video Extension Remote Code Execution Vulnerability.

CVE-2022-38010

Microsoft Office Visio Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-37963.

CVE-2022-38011

Raw Image Extension Remote Code Execution Vulnerability.

CVE-2022-26929

.NET Framework Remote Code Execution Vulnerability.

CVE-2022-35830

Remote Procedure Call Runtime Remote Code Execution Vulnerability.