Discord Server Red Security Twitter Donation to Red Security Red Security Youtube Channel Red Security Tumblr Profile
Login or Register to Hide ads and Accessing all features on the forum
Thread Rating:
  • 1 Vote(s) - 3 Average
  • 1
  • 2
  • 3
  • 4
  • 5
News Trend Micro Patched Zero-Day Vulnerabilities Under Active Exploit
In The Name OF Allah
Al-Salam Alekum

[Image: Ouel11KH_400x400.png]

Well done, under active attack

Quote:In a recent advisory, Trend Micro has revealed details about numerous security flaws in different products. These vulnerabilities primarily existed in Trend Micro Apex One and OfficeScan XG, which also include two zero-day bugs.

The first of the zero-days include a critical vulnerability (CVE-2020-8467) that allowed remote code execution attacks. The flaw existed in the migration tool component of Apex One and OfficeScan. Though, an attempted attack required user authentication.

The second zero-day, CVE-2020-8468, was a high severity content validation escape vulnerability that also required user authentication. Upon an exploit, the bug allowed an adversary to manipulate agent client components.

Besides, these two vulnerabilities, there were also three other bugs in Trend Micro Apex One and OfficeScan. While not exploited, all three vulnerabilities received a critical severity rating with a CVSS score of 10. All three did not require any user authentication for exploitation.

The Source

Wa Salam Alekum
* Thankful to Allah *

Possibly Related Threads…
Thread Author Replies Views Last Post
Star News Four More Bugs Patched in Microsoft’s Azure Sphere IoT Platform News 0 132 08-26-2020, 03:41 AM
Last Post: News
Wink News Mozilla Firefox 75 Is Out With Fixes For RCE vulnerabilities Mr.Kurd 0 434 04-13-2020, 01:13 PM
Last Post: Mr.Kurd
Rainbow News Microsoft Alerts Users Of Zero-Day RCE Vulnerability In Windows 7 Under Active Exploi Mr.Kurd 0 394 03-26-2020, 09:03 AM
Last Post: Mr.Kurd
Exclamation News Hackers Exploiting 2 Unpatched Windows 0-Day Vulnerabilities in Wide – Microsoft Warn Mr.Kurd 0 651 03-24-2020, 07:56 AM
Last Post: Mr.Kurd
Rainbow News Researchers Find Security Vulnerabilities In Some of The Top Password Managers Mr.Kurd 0 326 03-23-2020, 08:02 AM
Last Post: Mr.Kurd
Exclamation News NordVPN Patched a Flaw In Their Payments Platform That Exposed Users’ Details Mr.Kurd 0 390 03-09-2020, 05:34 PM
Last Post: Mr.Kurd
Exclamation News Vulnerabilities In Top Free Android VPN Apps Risk Over 120 Million Users Mr.Kurd 0 363 03-02-2020, 08:36 PM
Last Post: Mr.Kurd
Wink News Google patches Chrome zero-day under active attacks Mr.Kurd 0 378 02-25-2020, 06:09 PM
Last Post: Mr.Kurd
Wink News Coronavirus – hackers exploit fear of infection to spread malware Mr.Kurd 0 468 02-03-2020, 05:30 PM
Last Post: Mr.Kurd
Heart News Critical RCE & Spoofing Vulnerabilities in Microsoft Azure Cloud Let Hackers Compromi Mr.Kurd 0 462 01-31-2020, 07:32 AM
Last Post: Mr.Kurd

Users browsing this thread: 1 Guest(s)