Tag
#windows
Windows Clip Service Elevation of Privilege Vulnerability
Azure Service Fabric on Windows Information Disclosure Vulnerability
Windows Error Reporting Service Elevation of Privilege Vulnerability
Windows SmartScreen Security Feature Bypass Vulnerability
Cisco Talos has identified multiple versions of an undocumented malicious driver named “RedDriver,” a driver-based browser hijacker that uses the Windows Filtering Platform (WFP) to intercept browser traffic.
Actors are leveraging multiple open-source tools that alter the signing date of kernel mode drivers to load malicious and unverified drivers signed with expired certificates.
A Microsoft Windows policy loophole has been observed being exploited primarily by native Chinese-speaking threat actors to forge signatures on kernel-mode drivers. "Actors are leveraging multiple open-source tools that alter the signing date of kernel mode drivers to load malicious and unverified drivers signed with expired certificates," Cisco Talos said in an exhaustive two-part report shared
Mastery LMS version 1.2 suffers from a cross site scripting vulnerability.
Academy LMS version 5.15 suffers from a cross site scripting vulnerability.
Atlas Business Directory Listing version 2.13 suffers from cross site scripting vulnerabilities.