Subscribe via feed.
Archive for October, 2021

Virus.Win32.Ipamor.c Unauthenticated Reboot

Posted by deepcore under exploit (No Respond)

Virus.Win32.Ipamor.c malware suffers from an unauthenticated remote system reboot vulnerability.

Microsoft OMI Management Interface Authentication Bypass

Posted by deepcore under exploit (No Respond)

By removing the authentication header, an attacker can issue an HTTP request to the OMI management endpoint that will cause it to execute an operating system command as the root user. This vulnerability was patched in OMI version 1.6.8-1 (released September 8th 2021).

Backdoor.Win32.Prorat.ntz Man-In-The-Middle

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Prorat.ntz malware suffers from a man-in-the-middle vulnerability.

Backdoor.Win32.Prorat.ntz Weak Hardcoded Password

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Prorat.ntz malware suffers from having a weak hardcoded password.

Sophos UTM WebAdmin SID Command Injection

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an SID-based command injection in Sophos UTM’s WebAdmin interface to execute shell commands as the root user.

Apple Security Advisory 2021-10-26-4

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2021-10-26-4 – macOS Big Sur 11.6.1 addresses code execution, integer overflow, out of bounds read, and out of bounds write vulnerabilities.

Tags: , ,

Apple Security Advisory 2021-10-26-5

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2021-10-26-5 – Security Update 2021-007 Catalina addresses code execution, integer overflow, out of bounds read, and out of bounds write vulnerabilities.

Tags: , ,

Apple Security Advisory 2021-10-26-6

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2021-10-26-6 – watchOS 8.1 addresses buffer overflow, code execution, cross site scripting, information leakage, integer overflow, out of bounds read, out of bounds write, and use-after-free vulnerabilities.

Tags: , ,

Apple Security Advisory 2021-10-26-7

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2021-10-26-7 – tvOS 15.1 addresses buffer overflow, code execution, cross site scripting, information leakage, integer overflow, out of bounds read, out of bounds write, and use-after-free vulnerabilities.

Tags: , ,

Apple Security Advisory 2021-10-26-8

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2021-10-26-8 – Safari 15 addresses bypass, code execution, and use-after-free vulnerabilities.

Tags: , ,