Get a Pentest and security assessment of your IT network.

Cyber Security

Two Critical 0-Day Remote Exploits for vBulletin Forum Disclosed Publicly

Security researchers have disclosed details of two unpatched critical vulnerabilities in popular internet forum software. One of the vulnerabilities could allow a remote attacker to execute malicious code on the latest version of vBulletin application server. The vulnerabilities affect version 5 of the popular forum software, which powers more than 100,000 websites on the Internet. The vulnerability is due to unsafe usage of PHP’s unserialize() on user-supplied input, which allows an unauthenticated hacker to delete arbitrary files and possibly execute arbitrary code.

Source: https://thehackernews.com/2017/12/vbulletin-forum-hacking.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security