Remove 04
article thumbnail

Coronavirus-themed attacks March 29 – April 04, 2020

Security Affairs

In this post, I decided to share the details of the Coronavirus-themed attacks launched from March 29 to April 04, 2020. Crooks target Android users working from home due to the COVID19 outbreak with a Trojanized version of the popular video messaging app Zoom. Below a list of attacks detected this week. Pierluigi Paganini.

article thumbnail

EnemyBot malware adds new exploits to target CMS servers and Android devices

Security Affairs

CVE Number Affected devices CVE-2021-44228, CVE-2021-45046 Log4J RCE CVE-2022-1388 F5 BIG IP RCE No CVE (vulnerability published on 2022-02) Adobe ColdFusion 11 RCE CVE-2020-7961 Liferay Portal – Java Unmarshalling via JSONWS RCE No CVE (vulnerability published on 2022-04) PHP Scriptcase 9.7 LFI CVE-2018-16763 Fuel CMS 1.4.1

CMS 141
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Comodo Antivirus is affected by several vulnerabilities

Security Affairs

Wells also published a Proof-of-concept exploit code on GitHub and a video PoC for the flaw. Below the timeline for the flaw: 04/17/19 – Tenable discloses to Comodo. 04/29/19 – Tenable follows up, asking if vulnerabilities have been confirmed. 06/04/19 – Tenabe requests status update. Pierluigi Paganini.

Access 76
article thumbnail

Zero-day vulnerability in Android OS yet to be patched

Security Affairs

The high-severity zero-day issue resides in the driver for the Video For Linux 2 (V4L2) interface. ” The vulnerability resides in the way the Video for Linux (V4L2) driver handles input data, it could be exploited by an attacker to elevate permissions to kernel level.

Access 77