BLOG: 12 Vulnerabilities of Christmas – CVE -2019-2725
Background CVE-2019-2725 is a deserialization vulnerability in Oracle WebLogic, a Java EE application server which allows users to build, develop […]
Background CVE-2019-2725 is a deserialization vulnerability in Oracle WebLogic, a Java EE application server which allows users to build, develop […]
The penultimate blog in our series on the most significant vulns of the year focuses on an issue in an
The latest in our 12 vulns of Christmas series looks at a slightly older Office and Windows vulnerability that has
Having reportedly caused the death of a hospital patient and used to compromise organisations researching COVID-19, CVE-2019-19781 is potentially one
Although the latest vulnerability in our series had a CVSS of 9.8 rather than the 10.0 maximum, the ability to
CVE-2020-0688 is a critical vulnerability affecting Microsoft Exchange Server, allowing threat actors to achieve remote code execution (RCE) on compromised
CVE-2017-5638 is a severe vulnerability affecting Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1. This vulnerability was disclosed
CVE-2019-11510 is a vulnerability that affects VPN Pulse Secure’s Pulse Connect Secure (PCS), a VPN solution used by organisations worldwide. Pulse Secure originally disclosed the vulnerability on 22
CVE-2020-0796, aka “SMBGhost” or “CoronaBlue”, is a vulnerability affecting different versions of Windows 10 and Windows server which stems from
The breach affecting cyber security giant FireEye reaffirms that sophisticated adversaries can compromise even the most secure companies. Stolen material