Remove 02
article thumbnail

EnemyBot malware adds new exploits to target CMS servers and Android devices

Security Affairs

CVE Number Affected devices CVE-2021-44228, CVE-2021-45046 Log4J RCE CVE-2022-1388 F5 BIG IP RCE No CVE (vulnerability published on 2022-02) Adobe ColdFusion 11 RCE CVE-2020-7961 Liferay Portal – Java Unmarshalling via JSONWS RCE No CVE (vulnerability published on 2022-04) PHP Scriptcase 9.7 LFI CVE-2018-16763 Fuel CMS 1.4.1

CMS 141
article thumbnail

CISA adds WatchGuard flaw to its Known Exploited Vulnerabilities Catalog

Security Affairs

The group is also the author of the NotPetya ransomware that hit hundreds of companies worldwide in June 2017, causing billions worth of damage. The vulnerabilities added to the catalog have to be addressed by federal agencies by May 02, 2022. To nominate, please visit:? Follow me on Twitter: @securityaffairs and Facebook.

IT 84
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Persistent privacy powers professional businesses

CGI

Tue, 09/25/2018 - 02:46. Late in 2017, CGI in the UK commissioned and directed the Centre for Economics and Business Research (Cebr) and Opinium to conduct a survey and research around attitudes toward and preparedness for GDPR. Companywide information security policies. Third-party security policies.

Privacy 40
article thumbnail

A critical RCE flaw in Horde Webmail has yet to be addressed

Security Affairs

The Horde Webmail reached its end of life in 2017 it is known to be affected by multiple flaws, for this reason, users should stop using it. Below is the timeline for this flaw that has yet to be addressed: Date Action 2022-02-02 We report the issue to the vendor and inform about our 90 disclosure policy 2022-02-17 We ask for a status update.

Passwords 100