Vulnerabilities

Cybersecurity news and updates on the latest vulnerabilities. Read and educate yourself on the newest and latest exploits and CVEs. The Cyber Post brings you cyber security updates on the latest vulnerabilities relating to everyday software such as Google, Adobe, Microsoft, Cisco and more. Protect your corporate network or business by following TheCyberPost.coms daily security news.

Looking for a daily microsoft windows or Linux related vulnerability? Than the cyberpost is your source for computer and cyber related news and education. Stay concurrent on the latest cybersec news and world affairs.

5M WordPress Sites Running ‘Contact Form 7’ Plugin Open to Attack

0
A critical unrestricted file upload bug in Contact Form 7 allows an unauthenticated visitor to take over a site running the plugin. A patch for the popular WordPress plugin...

Technical Advisory: OS Command Injection in Silver Peak EdgeConnect Appliances (CVE-2020-12148, CVE-2020-12149)

0
Vendor: Silver Peak Vendor URL: https://www.silver-peak.com Versions affected: All EdgeConnect OS versions prior to 8.1.9.15, 8.3.0.8, 8.3.1.2, 8.3.2.0, 9.0.2.0, and 9.1.0.0. Systems Affected: Unity EdgeConnect Appliance & Orchestrator CVE Identifier: CVE-2020-12148 (nslookup API),...

Easy WP SMTP Security Bug Can Reveal Admin Credentials

0
A poorly configured file opens users up to site takeover. Easy WP SMTP, a WordPress plugin for email management that has more than 500,000 installations, has a vulnerability that could...

Ex-Cisco Employee Convicted for Deleting 16K Webex Accounts

0
The insider threat will go to jail for two years after compromising Cisco’s cloud infrastructure. A man has been sentenced to two years in jail after being convicted of hacking...

Security Issues in PoS Terminals Open Consumers to Fraud

0
Point-of-sale terminal vendors Verifone and Ingenico have issued mitigations after researchers found the devices use default passwords. Researchers are detailing widespread security issues in point-of-sale (PoS) terminals – specifically, three...

PLEASE_READ_ME Ransomware Attacks 85K MySQL Servers

0
Ransomware actors behind the attack have breached at least 85,000 MySQL servers, and are currently selling at least compromised 250,000 databases. Researchers are warning on an active ransomware campaign that’s...

Record Levels of Software Bugs Plague Short-Staffed IT Teams in 2020

0
As just one symptom, 83 percent of the Top 30 U.S. retailers have vulnerabilities which pose an “imminent” cyber-threat, including Amazon, Costco, Kroger and Walmart. 2020 is shaping up to...

Microsoft Wraps Up a Lighter Patch Tuesday for the Holidays

0
Nine critical bugs and 58 overall fixes mark the last scheduled security advisory of 2020. Microsoft has addressed 58 CVEs (nine of them critical) for its December 2020 Patch Tuesday...

Google Patches Critical Wi-Fi and Audio Bugs in Android Handsets

0
Google updates its mobile OS, fixing ten critical bugs, including one remote code execution flaw. Google patched ten critical bugs as part of its December Android Security Bulletin. The...

NSA Warns: Patched VMware Bug Under Active Attack

0
Feds are warning that adversaries are exploiting a weeks-old bug in VMware’s Workspace One Access and VMware Identity Manager products. Active attacks against a flaw in VMware’s Workspace One...