Get a Pentest and security assessment of your IT network.

News

HP Device Manager CVE-2020-6925, CVE-2020-6926, CVE-2020-6927

HP Device Manager vulnerabilities can lead to unauthenticated remote command execution with SYSTEM privileges. The official advisory and mitigation advice from HP can be found here. PoC exploit can be downloaded from the Internet and downloaded free (free account registration required) The exploit is based on an open TCP port 1099, the default port for a Java Remote Method Invocation (RMI) service registry. The RMI protocol seems to be commonly found in enterprise systems and security of the protocol and applications using it often relies on obscurity.”]

Source: https://nickbloor.co.uk/2020/10/05/hp-device-manager-cve-2020-6925-cve-2020-6926-cve-2020-6927/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks