Severity High Analysis Summary TrickBot is a banking Trojan which targets sensitive information and acts as a dropper for other malware. Trickbot is usually spread via […]
Severity Medium Analysis Summary Intel Computing Improvement Program could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper access control […]
Severity Medium Analysis Summary Microsoft Dynamics 365 (on-premises) is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this […]
Severity Medium Analysis Summary MassLogger is a spyware/stealer delivered via a malicious Word Document which exploits vulnerabilities (CVE-2017-11882 and CVE-2018-0802) in the equation editor allowing for […]
Severity Medium Analysis Summary Microsoft SQL Server Management Studio (SSMS) is vulnerable to a denial of service, caused by the improper handling of files By executing […]
Severity High Analysis Summary Researchers have analyzed two samples of script-based malware. Both sample were distributed by exploiting CVE-2019-0752, an Internet Explorer RCE vulnerability. Specifically, the […]
Severity High Analysis Summary Affected applications are delivered with a third-party component that contains a remote code execution vulnerability if the advanced reporting engine is enabled. […]
Severity High Analysis Summary SAP NetWeaver (Knowledge Management) allows the automatic execution of script content in a stored file due to inadequate filtering with the accessing […]
Severity High Analysis Summary Researchers have observed a campaign targeting small/medium sectors using COVID-19 themed malicious documents. The documents contain two OLE objects which are a […]