Resposta de Emergência

Cisco Common Service Platform Collector Default Password Vulnerability (CVE-2019-1723) Threat Alert

abril 29, 2019 | NSFOCUS

Overview Cisco officially released a security advisory, announcing the fix of a vulnerability (CVE-2019-1723) existing in the Cisco Common Service Platform Collector (CSPC). This vulnerability exists because the affected software has a default account with a fixed password. An attacker could exploit this vulnerability to remotely access an affected device by using this account. This […]

Apache Tomcat Remote Code Execution Vulnerability (CVE-2019-0232) Threat Alert

abril 26, 2019 | NSFOCUS

Overview On April 10, local time, Apache Software Foundation officially released a security advisory, announcing the fix of a remote code execution vulnerability (CVE-2019-0232). The Java Runtime Environment (JRE), when running on a Windows system with enableCmdLineArguments enabled, passes command-line parameters to Windows in an incorrect manner. This leads to the CGI servlet susceptible to […]

Siemens Multiple Products Vulnerabilities Threat Alert

abril 25, 2019 | NSFOCUS

Overview On April 9, local time, Siemens officially released a security advisory, announcing the fix of vulnerabilities of different risk levels in a spectrum of products such as SIMATIC WinCC Open Architecture (SIMATIC WinCC OA), Spectrum Power, and RUGGEDCOM RXO II. Of all these vulnerabilities, two have a CVSS v3.0 base score of 10.

Confluence SSRF and Remote Code Execution Vulnerability Handling Guide

abril 22, 2019 | NSFOCUS

1 Vulnerability Overview Recently, Atlassian officially released a security bulletin, announcing a server-side request forgery (SSRF) vulnerability and a remote code execution vulnerability (CVE-2019-3396). The two vulnerabilities respectively reside in WebDAV and Widget Connector and could be exploited by an attacker for remote code execution and server-side request forgery.

Apache Axis Remote Code Execution Vulnerability (CVE-2019-0227) Threat Alert

abril 19, 2019 | NSFOCUS

Overview The default service StockQuoteService.jws in Axis contains a hard-coded HTTP URL, which can be used to trigger an HTTP request. An attacker can conduct a man-in-the-middle (MITM) attack by taking control of a domain (www.xmltoday.com) or performing ARP poisoning against the targeted Axis server, and then redirect the HTTP request to a malicious web […]

Microsoft’s April 2019 Patches Fix 76 Vulnerabilities Threat Alert

abril 18, 2019 | NSFOCUS

Overview Microsoft released April 2019 security patches on Tuesday that fix 76 vulnerabilities ranging from simple spoofing attacks to remote code execution in various products, including .NET Core, Adobe Flash Player, CSRSS, Microsoft Browsers, Microsoft Edge, Microsoft Exchange Server, Microsoft Graphics Component, Microsoft JET Database Engine, Microsoft Office, Microsoft Office SharePoint, Microsoft Scripting Engine, Microsoft […]

Adobe Security Advisory for April Security Updates

abril 15, 2019 | NSFOCUS

Overview On April 9, local time, Adobe officially released April security updates which fix multiple vulnerabilities in such products as Adobe Flash Player, Shockwave Player, Dreamweaver, XD CC, InDesign, Experience Manager Forms, and Bridge CC.

Apache HTTP Server Privilege Escalation Vulnerability Threat Alert

abril 12, 2019 | NSFOCUS

1 Vulnerability Overview Recently, Apache released a security advisory, announcing remediation of a privilege escalation vulnerability (CVE-2019-0211). Apache HTTP Server running MPM event, worker or, prefork could allow a less-privileged child thread or process (including scripts executed by an in-process scripting interpreter) to execute arbitrary code with privileges of the parent process (usually root) by […]

2018 DDoS Attack Landscape-2

abril 10, 2019 | NSFOCUS

Overview of DDoS Attacks in 2018 

IP Reputation Report-04052019

abril 10, 2019 | NSFOCUS

Top 10 countries in attack counts: The above diagram shows the top 10 regions with the most malicious IP addresses from the NSFOCUS IP Reputation databases at April 05, 2019.