Get a Pentest and security assessment of your IT network.

Cyber Security

Critical VMware Zero-Day Bug Allows Command Injection; Patch Pending

The U.S. Cybersecurity and Infrastructure Security Agency is warning of a zero-day bug affecting six VMware products. The bug has a CVSS severity rating of 9.1 out of 10. The company has no patch for a critical escalation-of-privileges bug that impacts both Windows and Linux operating systems and its Workspace One product. A malicious actor with network access to the administrative configurator on port 8443 and a valid password for the.configurator admin account can execute commands with unrestricted privileges.

Source: https://threatpost.com/vmware-zero-day-patch-pending/161523/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security