Rewterz

Rewterz Threat Advisory – CVE-2021-42740 – Node.js shell-quote module

October 25, 2021
Rewterz

Rewterz Threat Advisory – Multiple McAfee ePolicy Orchestrator Vulnerabilities

October 25, 2021

Rewterz Threat Advisory – Multiple Microsoft .NET Core, Visual Studio, Dynamics 365

Severity

Low

Analysis Summary

CVE-2021-42307

Microsoft Edge (Chromium-based) could allow a remote attacker to obtain sensitive information. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to obtain sensitive information.

Impact

  • Information Disclosure

Affected Vendors

Microsoft

Affected Products

  • Microsoft Edge (Chromium-based) 95.0.1020.30

Remediation

Refer to Microsoft Web site for patch, upgrade, or suggested workaround information.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42307

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.