Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Microsoft Windows Remote Code Execution Vulnerabilities

Windows DLL Remote Code Execution VulnerabilityA remote code execution vulnerability exists when Microsoft Windows improperly handles the loading of dynamic link library (DLL) files. An attacker who successfully exploited the vulnerability could take complete control of an affected system. An attacker could then install programs; ...
Last Update Date: 15 Jul 2015 15:11 Release Date: 15 Jul 2015 6247 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Remote Procedure Call Elevation of Privilege Vulnerability

An elevation of privilege vulnerability exists in the Microsoft Remote Procedure Call (RPC) that could allow an attacker to elevate privileges on a targeted system. The vulnerability is caused when Windows RPC inadvertently allows DCE/RPC connection reflection.
Last Update Date: 15 Jul 2015 15:02 Release Date: 15 Jul 2015 6396 Views

RISK: High Risk

High Risk

Microsoft Office Remote Code Execution Vulnerabilities

Multiple Microsoft Office Memory Corruption VulnerabilitiesRemote code execution vulnerabilities exist in Microsoft Office software when the Office software fails to properly handle objects in memory. Microsoft Excel ASLR Bypass VulnerabilityA security feature bypass vulnerability exists in Microsoft Excel when memory is released in an unintended manner. The vulnerability...
Last Update Date: 15 Jul 2015 15:00 Release Date: 15 Jul 2015 6165 Views

RISK: High Risk

High Risk

OpenSSL Alternative Certificate Chain Validation Vulnerability

A vulnerability was identified in OpenSSL. A remote user can bypass certificate validation on the target system. When the validation of a certificate chain fails, the system attempts to validate an alternate certificate chain but does not check the CA flag of untrusted certificates. As a...
Last Update Date: 10 Jul 2015 10:42 Release Date: 10 Jul 2015 6691 Views

RISK: Medium Risk

Medium Risk

Joomla Multiple Vulnerabilities

Multiple vulnerabilities were identified in Joomla!. A remote user can redirect the target user's browser to an arbitrary site. A remote user can conduct cross-site request forgery attacks.
Last Update Date: 8 Jul 2015 10:26 Release Date: 8 Jul 2015 6253 Views

RISK: Medium Risk

Medium Risk

ISC BIND DNSSEC Denial of Service Vulnerability

A vulnerability was identified in ISC BIND. A remote user can cause the target service to crash. A remote user can send a query to the target service for a DNS zone that contains specially crafted zone data to cause the target recursive resolver to crash. Recursive...
Last Update Date: 8 Jul 2015 10:25 Release Date: 8 Jul 2015 6333 Views

RISK: High Risk

High Risk

Mozilla Firefox and Thunderbird Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox and Thunderbird, which can be exploited by remote attacker to gain elevated privileges, bypass security controls, obtain potentially sensitive information and cause arbitrary code to be executed on the target user's system.  
Last Update Date: 7 Jul 2015 Release Date: 6 Jul 2015 6265 Views

RISK: Medium Risk

Medium Risk

Cisco Unified Communications Domain Manager Default Static Privileged Account Credentials Vulnerability

A vulnerability has been identified in the Cisco Unified Communications Domain Manager Platform Software, which could allow an unauthenticated, remote attacker to login with the privileges of the root user and take full control of the affected system.
Last Update Date: 6 Jul 2015 Release Date: 2 Jul 2015 6089 Views

RISK: High Risk

High Risk

Apple iTunes Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple iTunes, which can be exploited by remote attacker to conduct denial of service attack and remote code execution.
Last Update Date: 6 Jul 2015 Release Date: 2 Jul 2015 5937 Views

RISK: High Risk

High Risk

Apple iOS Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple iOS, which can be exploited by remote attacker to conduct cross site scripting, denial of service attack, security restriction bypass, sensitive information disclosure, spoofing and remote code execution.
Last Update Date: 6 Jul 2015 Release Date: 2 Jul 2015 6319 Views