X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - Hier 14:49

AMD fixed a flaw that allowed to load malicious microcode

AMD released security patches to fix a flaw that could bypass SEV protection, letting attackers load malicious microcode. Researchers from Google disclosed an improper signature verification vulnerability, tracked as CVE-2024-56161 (CVSS score of 7.2), in AMD’s Secure Encrypted Virtualization (SEV). An attacker could trigger the flaw to load a malicious CPU microcode under specific conditions. “Improper […]

Articles similaires

Sorry! Image not available at this time

VMware fixed a flaw in Avi Load Balancer

itsecuritynews.info - 29/Jan 00:15

VMware fixed a high-risk blind SQL injection vulnerability in Avi Load Balancer, allowing attackers to exploit databases via crafted queries. VMware...

Sorry! Image not available at this time

FortiOS Authentication Bypass Vulnerability Exploited to Gain Super-Admin Access

itsecuritynews.info - 28/Jan 05:33

A critical zero-day vulnerability in Fortinet’s FortiOS and FortiProxy products tracked as CVE-2024-55591, has been actively exploited in the wild,...

Sorry! Image not available at this time

VMware fixed a flaw in Avi Load Balancer

securityaffairs.co - 28/Jan 23:04

VMware fixed a high-risk blind SQL injection vulnerability in Avi Load Balancer, allowing attackers to exploit databases via crafted queries. VMware...

Sorry! Image not available at this time

Cisco addresses a critical privilege escalation bug in Meeting Management

securityaffairs.co - 23/Jan 08:17

Cisco addressed a critical flaw in its Meeting Management that could allow it to gain administrator privileges on vulnerable instances. Cisco released...

Sorry! Image not available at this time

CVE-2025-0065 Impacts TeamViewer Client

thecyberthrone.in - 29/Jan 12:30

Background CVE-2025-0065 is an unauthenticated privilege escalation vulnerability with a CVSS score of 7.8. This flaw is found in the...

Sorry! Image not available at this time

Meta’s Llama Framework Flaw Exposes AI Systems to Remote Code Execution Risks

itsecuritynews.info - 26/Jan 11:33

A high-severity security flaw has been disclosed in Meta’s Llama large language model (LLM) framework that, if successfully exploited, could allow...

Sorry! Image not available at this time

Roundcube XSS Flaw Allows Attackers to Inject Malicious Files

itsecuritynews.info - 05:31

A critical Cross-Site Scripting (XSS) vulnerability has been discovered in the popular open-source webmail client, Roundcube, potentially exposing...

In the AMD chips, they found a security vulnerability that allows computer pirates to capture their computer pirates 15:16

socialbites.ca - 12:19

Google, EPYC server and consumer Ryzen Zen 4, including a wide variety of AMD processors announced that the critical vulnerability is perceived....

Sorry! Image not available at this time

Attackers exploit SimpleHelp RMM Software flaws for initial access

securityaffairs.co - 29/Jan 06:17

Threat actors exploit recently fixed SimpleHelp RMM software vulnerabilities to breach targeted networks, experts warn. Horizon3 researchers...

Sorry! Image not available at this time

TeamViewer fixed a vulnerability in Windows client and host applications

securityaffairs.co - 30/Jan 15:29

TeamViewer has patched a high-severity privilege escalation vulnerability affecting its Windows client and host applications. TeamViewer released...