본문 바로가기

RCE

rConfig에서 치명적인 RCE 취약점 발견돼 Watch Out IT Admins! Two Unpatched Critical RCE Flaws Disclosed in rConfig 한 사이버 보안 연구원이 rConfig 유틸리티에서 패치되지 않은 치명적인 원격 코드 실행 취약점 두 개에 대한 세부 정보와 PoC 익스플로잇을 공개했습니다. 이 중 최소 하나는 인증되지 않은 원격 공격자들이 타깃 서버와 연결된 네트워크 기기를 해킹하도록 허용합니다. native PHP로 작성된 rConfig는 무료 오픈소스 네트워크 기기 구성 관리 유틸리티로 네트워크 엔지니어가 네트워크 기기를 구성하고 주기적으로 구성 스냅샷을 찍는 데 사용할 수 있습니다. rConfig의 웹사이트에 따르면, 이는 스위치, 라우터, 방화벽, 로드 밸런서, WAN 옵티마이저를 포함한 네트워.. 더보기
Watch Out IT Admins! Two Unpatched Critical RCE Flaws Disclosed in rConfig If you're using the popular rConfig network configuration management utility to protect and manage your network devices, here we have an important and urgent warning for you. A cybersecurity researcher has recently published details and proof-of-concept exploits for two unpatched, critical remote code execution vulnerabilities in the rConfig utility, at least one of which could allow unauthentic.. 더보기
맥OS의 터미널 에뮬레이터 아이텀2에서 치명적인 취약점 발견 7-Year-Old Critical RCE Flaw Found in Popular iTerm2 macOS Terminal App https://thehackernews.com/2019/10/iterm2-macos-terminal-rce.html 7-Year-Old Critical RCE Flaw Found in Popular iTerm2 macOS Terminal App A 7-year-old critical remote code execution vulnerability has been discovered in iTerm2 macOS terminal emulator app. thehackernews.com 모질라의 MOSS 프로그램 통해 감사했더니...원격 코드 취약점 나와 시스템 개발자 및 관리자들이.. 더보기
7-Year-Old Critical RCE Flaw Found in Popular iTerm2 macOS Terminal App October 09, 2019 Mohit Kumar A 7-year-old critical remote code execution vulnerability has been discovered in iTerm2 macOS terminal emulator app—one of the most popular open source replacements for Mac's built-in terminal app. Tracked as CVE-2019-9535, the vulnerability in iTerm2 was discovered as part of an independent security audit funded by the Mozilla Open Source Support Program (MOSS) and .. 더보기
MS 10월 보안 위협에 따른 정기 보안 업데이트 권고 Source for https://www.krcert.or.kr/data/secNoticeView.do?bulletin_writing_sequence=35158 KISA 인터넷 보호나라&KrCERT KISA 인터넷 보호나라&KrCERT www.boho.or.kr Microsoft Releases October 2019 Patch Tuesday Updates https://www.doyolabs.com/entry/Microsoft-Releases-October-2019-Patch-Tuesday-Updates Microsoft Releases October 2019 Patch Tuesday Updates October 08, 2019Swati Khandelwal Microsoft today rolling o.. 더보기
Microsoft Releases October 2019 Patch Tuesday Updates October 08, 2019Swati Khandelwal Microsoft today rolling out its October 2019 Patch Tuesday security updates to fix a total of 59 vulnerabilities in Windows operating systems and related software, 9 of which are rated as critical, 49 are important, and one is moderate in severity. What’s good about this month’s patch update is that after a very long time, none of the security vulnerabilities pat.. 더보기
[Unpatched] Critical 0-Day RCE Exploit for vBulletin Forum Disclosed Publicly September 24, 2019Wang Wei An anonymous hacker today publicly revealed details and proof-of-concept exploit code for an unpatched, critical zero-day remote code execution vulnerability in vBulletin—one of the widely used internet forum software. One of the reasons why the vulnerability should be viewed as a severe issue is not just because it is remotely exploitable, but also doesn't require a.. 더보기