Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

VMware vCenter Server local privilege escalation vulnerability (CVE-2021-21991)

CVE number = CVE-2021-21991 The VMware vCenter Server contains a local privilege escalation vulnerability due to the way it handles session tokens. 

Read More
NewsSecurity Vulnerabilities

Apache OpenOffice remote code execution flaw [CVE-2021-33035]

CVE number = CVE-2021-33035 Security researcher Eugene Lim (@spaceraccoonsec) has revealed technical details about a remote code execution flaw in

Read More
NewsSecurity Vulnerabilities

VMware vCenter Server file upload vulnerability (CVE-2021-22005)

CVE number = CVE-2021-22005 The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with

Read More
NewsSecurity Vulnerabilities

Netgear remote code execution security vulnerability [CVE-2021-40847]

CVE number – CVE-2021-40847 Netgear has released security updates to address a remote code execution vulnerability in multiple NETGEAR routers.

Read More
NewsSecurity Vulnerabilities

Adobe Acrobat Reader DC AcroForm getItemAt Use-After-Free Remote Code Execution Vulnerability [CVE-2021-39839]

CVE number – CVE-2021-39839 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Acrobat Reader

Read More
NewsSecurity Vulnerabilities

Cisco IOS XR Software Arbitrary File Read and Write Vulnerability [CVE-2021-34718]

CVE number – CVE-2021-34718 A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated,

Read More
NewsSecurity Vulnerabilities

Disc Soft Ltd Daemon Tools Pro ISO Parsing memory corruption vulnerability [CVE-2021-21832]

CVE number = CVE-2021-21832 A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools

Read More
NewsSecurity Vulnerabilities

Nitro Pro PDF JavaScript document.flattenPages vulnerability [CVE-2021-21798]

CVE number = CVE-2021-21798 An exploitable return of stack variable address vulnerability exists in the JavaScript implementation of Nitro Pro

Read More
NewsSecurity Vulnerabilities

Cisco Enterprise NFV Infrastructure Software Authentication Bypass Vulnerability [CVE-2021-34746]

CVE number = CVE-2021-34746 A vulnerability in the TACACS+ authentication, authorization and accounting (AAA) feature of Cisco Enterprise NFV Infrastructure

Read More
NewsSecurity Vulnerabilities

ProxyToken Exchange Server Vulnerability [CVE-2021-33766]

CVE number – CVE-2021-33766 It was reported in March 2021 by researcher Le Xuan Tuyen of VNPT ISC, and it

Read More