Tag: adobe
-
CISA and FBI Raise Alerts on Exploited Flaws and Expanding HiatusRAT Campaign
Tags: access, adobe, cisa, control, cve, cybersecurity, exploit, flaw, infrastructure, kev, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added two security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild.The list of flaws is below -CVE-2024-20767 (CVSS score: 7.4) – Adobe ColdFusion contains an improper access control vulnerability that could allow an attacker to access or…
-
Microsoft closes 2024 with extensive security update
Adobe, too. First seen on cyberscoop.com Jump to article: cyberscoop.com/microsoft-patch-tuesday-december-2024/
-
Adobe Patches Over 160 Vulnerabilities Across 16 Products
Adobe has patched over 160 vulnerabilities across over a dozen products, including Reader, Illustrator, Photoshop and Connect. The post Adobe Patches Over 160 Vulnerabilities Across 16 Products appeared first on SecurityWeek. First seen on securityweek.com Jump to article: www.securityweek.com/adobe-patches-over-160-vulnerabilities-across-16-products/
-
SAP fixed critical SSRF flaw in NetWeaver’s Adobe Document Services
SAP has issued patches for 16 vulnerabilities, including a critical SSRF flaw in NetWeaver’s Adobe Document Services. SAP addressed 16 vulnerabilities as part of its December 2024 Security Patch Day. The company released nine new and four updated security notes. The most severe of these vulnerabilities is a critical issue, tracked as CVE-2024-47578 (CVSS score…
-
Critical SAP Vulnerabilities Let Attackers Upload Malicious PDF Files
SAP has issued Security Note 3536965 to address multiple high-severity vulnerabilities in the Adobe Document Services of SAP NetWeaver AS for JAVA. These vulnerabilities, identified as CVE-2024-47578, CVE-2024-47579, and CVE-2024-47580, allow attackers to manipulate or upload malicious PDF files, potentially compromising internal systems and exposing sensitive data. Details of the Vulnerabilities CVE-2024-47578: Server-Side Request Forgery (SSRF) This flaw allows attackers with administrative privileges to send specially crafted…
-
Patchday Adobe: Schadcode-Attacken auf After Effects & Co. möglich
Verschiedene Anwendungen von Adobe sind verwundbar. Sicherheitsupdates schließen mehrere Lücken. First seen on heise.de Jump to article: www.heise.de/news/Patchday-Adobe-Schadcode-Attacken-auf-After-Effects-Co-moeglich-10029714.html
-
Patch Tuesday: Critical Flaws in Adobe Commerce, Photoshop, InDesign, Illustrator
Adobe patches critical-severity bugs in multiple products, including the Adobe Commerce and Magento Open Source platforms. The post Patch Tuesday: Critical Flaws in Adobe Commerce, Photoshop, InDesign, Illustrator appeared first on SecurityWeek. First seen on securityweek.com Jump to article: www.securityweek.com/patch-tuesday-critical-flaws-in-adobe-commerce-photoshop-indesign-illustrator/
-
Infostealer SYS01 – Malvertising-Kampagne zielt auf Facebook, Office 365 und Adobe
First seen on security-insider.de Jump to article: www.security-insider.de/-malware-sys01-bedroht-nutzerkonten-malvertising-kampagne-a-fc49b3a71bf60ce9b54c463aa49ac482/
-
Adobe-Patchday: Neun Produkte mit Sicherheitslücken
Tags: adobeFirst seen on heise.de Jump to article: www.heise.de/news/Adobe-Patchday-Neun-Produkte-mit-Sicherheitsluecken-9974474.html
-
Unlocking Proactive Compliance with Adobe’s Common Controls Framework
TechSpective Podcast Episode 141 I had the pleasure of speaking with Devansh Sharma, Senior Security and Compliance Product Owner at Adobe, about a ga… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/10/unlocking-proactive-compliance-with-adobes-common-controls-framework/
-
Adobe Security Alert: Update Software Now to Protect Against Exploits
Adobe announced a series of important security updates aimed at addressing several vulnerabilities across its product suite. These vulnerabilities cou… First seen on thecyberexpress.com Jump to article: thecyberexpress.com/adobe-security-update/
-
Alert: Adobe Commerce and Magento Stores Under Attack from CosmicSting Exploit
Cybersecurity researchers have disclosed that 5% of all Adobe Commerce and Magento stores have been hacked by malicious actors by exploiting a securit… First seen on thehackernews.com Jump to article: thehackernews.com/2024/10/alert-adobe-commerce-and-magento-stores.html
-
CosmicSting-Attacke auf Adobe Commerce – Tausende Online-Shops mit Adobe Commerce gehackt
Tags: adobeFirst seen on security-insider.de Jump to article: www.security-insider.de/sicherheitsluecke-adobe-commerce-cosmicsting-angriffe-a-9abddaace30c0bb9430f24ef256467b8/
-
Thousands of Adobe Commerce e-stores hacked by exploiting the CosmicSting bug
Over 4,000 unpatched Adobe Commerce and Magento stores have been compromised by exploiting critical vulnerability CVE-2024-34102. Sansec researchers r… First seen on securityaffairs.com Jump to article: securityaffairs.com/169316/cyber-crime/4000-unpatched-adobe-commerce-and-magento-stores-hacked.html
-
CosmicSting Attacks Hit Adobe Commerce, Magento Stores
First seen on scworld.com Jump to article: www.scworld.com/brief/cosmicsting-attacks-hit-adobe-commerce-magento-stores
-
Widespread CosmicSting attacks hit Adobe Commerce, Magento stores
First seen on scworld.com Jump to article: www.scworld.com/brief/widespread-cosmicsting-attacks-hit-adobe-commerce-magento-stores
-
Over 4,000 Adobe Commerce, Magento shops hacked in CosmicSting attacks
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/over-4-000-adobe-commerce-magento-shops-hacked-in-cosmicsting-attacks/
-
Adobe fixed Acrobat bug, neglected to mention whole zero-day exploit thing
First seen on theregister.com Jump to article: www.theregister.com/2024/09/12/adobe_acrobat_0day/
-
Mass Retail Hacks Affect Adobe Commerce and Magento Stores
4,387 Online Merchants Compromised, Including Cisco and National Geographic Stores. Thousands of online stores running Adobe Commerce and Magento soft… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/mass-retail-hacks-affect-adobe-commerce-magento-stores-a-26449
-
Adobe-Patchday: Kritische Lücken in mehreren Produkten
Tags: adobeFirst seen on heise.de Jump to article: www.heise.de/news/Adobe-Patchday-Kritische-Luecken-in-mehreren-Produkten-9864254.html
-
Windows MSHTML Zero-Day Vulnerability Exploited In The Wild
Adobe released eight security updates in September 2024, addressing 28 vulnerabilities in various products, as ColdFusion received a critical patch to… First seen on gbhackers.com Jump to article: gbhackers.com/windows-mshtml-zero-day-exploit/
-
In Other News: Possible Adobe Reader Zero-Day, Hijacking Mobi TLD, WhatsApp View Once Exploit
Noteworthy stories that might have slipped under the radar: a possible Adobe Reader zero-day, researchers mistakenly hijack .mobi TLD, and an exploite… First seen on securityweek.com Jump to article: www.securityweek.com/in-other-news-possible-adobe-reader-zero-day-hijacking-mobi-tld-whatsapp-view-once-exploit/
-
Adobe completes fix for Reader bug with known PoC exploit (CVE-2024-41869)
Among the security updates released by Adobe on Tuesday are those for various versions of Adobe Acrobat and Reader, which fix two critical flaws that … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/09/12/cve-2024-41869/
-
Adobe Patch Tuesday security updates fixed multiple critical issues in the company’s products
Adobe addressed tens of vulnerabilities, including critical issues that could allow attackers to execute arbitrary code on Windows and macOS. Adobe Pa… First seen on securityaffairs.com Jump to article: securityaffairs.com/168313/security/adobe-patch-tuesday-sept-2024.html
-
Adobe fixes Acrobat Reader zero-day with public PoC exploit
A cybersecurity researcher is urging users to upgrade Adobe Acrobat Reader after a fix was released yesterday for a remote code execution zero-day wit… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/adobe-fixes-acrobat-reader-zero-day-with-public-poc-exploit/
-
Adobe patches Acrobat bug, neglects to mention whole zero-day, exploit thing
First seen on theregister.com Jump to article: www.theregister.com/2024/09/12/adobe_acrobat_0day/
-
Adobe Security Update, Multiple Vulnerabilities Patched
Adobe has issued a crucial security update for its Acrobat and Reader software on Windows and macOS platforms. This update, identified as APSB24-70, a… First seen on gbhackers.com Jump to article: gbhackers.com/adobe-security-update/
-
Adobe Patches Critical, Code Execution Flaws in Multiple Products
Patch Tuesday: Adobe releases patches for 28 security vulnerabilities and warned of code execution risks on Windows and macOS platforms. The post Adob… First seen on securityweek.com Jump to article: www.securityweek.com/adobe-patches-critical-code-execution-flaws-in-multiple-products/
-
Talos discovers 11 vulnerabilities between Microsoft, Adobe software disclosed on Patch Tuesday
Eight of the vulnerabilities affect the license update feature for CLIPSP.SYS, a driver used to implement Client License System Policy on Windows 10 a… First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/talos-discovers-11-vulnerabilities-between-microsoft-adobe-software-disclosed-on-patch-tuesday/
-
Webbrowser: Weitere Lücke aktiv ausgenutzt, Adobe PDF-Viewer aktualisiert
Tags: adobeFirst seen on heise.de Jump to article: www.heise.de/news/Webbrowser-Weitere-Luecke-aktiv-ausgenutzt-Adobe-PDF-Viewer-aktualisiert-9848318.html

