-
6 vulnerabilities in some Huawei products – The culprit,SOAP!
The Simple Object Access Protocol (SOAP) invoking objects on remote machine. It is XML-based messaging thus run on top of HTTP/HTTPS. That is the reason why firewall cannot significant block them. An announcement issued by HUAWEI. For more details, please refer below url for reference. Security Advisory – Six Vulnerabilities in Some Huawei Products http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180207-01-soap-en
-
Attention: Stay Alert – Multiple Vulnerabilities in PHP Could Allow for Arbitrary Code Execution
Preface: PHP is a widely-used open source general-purpose scripting language that is especially suited for web development and can be embedded into HTML. Security concern by security experts The security issues are typically exposed when PHP code makes use of system-level calls. Found critical security problem today! – Original release date: April 27, 2018 The…
-
Attention: PeopleSoft Enterprise PeopleTools (Rich Text Editor) vulnerability – Apr 2018
CVE# Product Component Protocol Remote Exploit without Auth.? CVSS VERSION 3.0 RISK (see Risk Matrix Definitions) Supported Versions Affected Notes Base Score Attack Vector Attack Complex Privs Req’d User Interact Scope Confid- entiality Inte- grity Avail- ability CVE-2018-2772 PeopleSoft Enterprise PeopleTools Rich Text Editor HTTP No 8.8 Network Low Low None Un- changed High High…
-
CVE-2018-0229: See whether is there any attack make use of this vulnerability transform another type of attack in future?
Seems firewall administrator do not take the single sign-on authentication method in firewall. Perhaps it can’t fulfill audit requirement. Cisco found SAML Authentication Session Fixation Vulnerability. The vulnerability exists because there is no mechanism for the ASA or FTD Software to detect that the authentication request originates from the AnyConnect client directly. An attacker could exploit…
-
Date:2018-April-25 – Drupal Releases Critical Security Updates
Perhaps we urge the developers to do the re-engineering the core. There are 2 times of critical vulnerabilities happened within 1 week (18th Apr 2018, 24th Apr 2018). It provide a bad reputation of the brand. The founder is better to end the life of this product then make a new generation of CMS system.…
-
Be alert! Vulnerability in the Java SE, Java SE Embedded and JRockit component of Oracle Java SE (subcomponent: Serialization).
The security concerns on CVE-2018-2815, please staying alert. For more details, please see below: The Java Security Architecture (JSA) defines ways for unprivileged code to perform privileged operations using AccessController.doPrivileged(). 2. The method includes create a new PrivilegedIntrospectHelper. 3. The new PrivilegedIntrospectHelper will be executed on a privileged block. This block will all internalIntrospecthelper(bean,prop,value,request,param,ignoreMethodNF) which will allow to invoke encapsulation…
-
Hackers jailbreak MyEtherWallet Infrastructure (Apr 2018)
ISPs tend to restrict what an end customer can advertise. However, any ISP do not filter customer advertisements. A possible factor let’s hacker compromise the customer router thus advertise errant information into the global routing table. An attackers stolen at least $13,000 in Ethereum within two hours. Security expert speculate that it is a DNS…
-
Apple security updates (Apr 2018)
My speculation on iOS 11.3.1 show on picture.This is the moment when silence is more expressive than all words ever spoken. For more details about official announcement. Please see below url for references: About the security content of iOS 11.3.1 https://support.apple.com/en-us/HT208743 About the security content of Safari 11.1 https://support.apple.com/en-us/HT208741 About the security content of Security…
-
Schneider Electric Important Security Notification – Mar & Apr 2018
A flaws found in Schneider Electric’s Modicon M340 PLC Station P34 Module human machine interface (HMI) software since 2015. An official announcement by vendor since last month till now. From techincal point of view, Modicon product series programmable logic controller has large usage in electric, gas and oil supply industry. So related party must…
-
Cisco Firepower vulnerabilities – Apr 2018
The content filter features enhance the firewall defense function. At the same time it is hard to avoid the design limitation occurs in this place. And therefore vulnerabilities occurs! Vulnerabilities details shown as below: CVE-2018-0233: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fpsnort CVE-2018-0272: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-firepower CVE-2018-0254: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fss2 CVE-2018-0244: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fss1 CVE-2018-0243: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fss CVE-2018-0230: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fp2100