
CERT/CC
@certcc
Followers
4K
Following
2
Media
4
Statuses
103
CERT Coordination Center at the Carnegie Mellon University Software Engineering Institute.
Pittsburgh, PA, USA
Joined March 2009
We've published vulnerability note VU#490028 about Zerologon / CVE-2020-1472. Windows Domain controllers without the August update from Microsoft are vulnerable to complete domain takeover by an unauthenticated attacker. Samba DCs < 4.8 affected by default.
kb.cert.org
Microsoft Windows Netlogon Remote Protocol (MS-NRPC) uses insecure AES-CFB8 initialization vector
0
4
7
RT @CNMF_CyberAlert: Please patch all devices affected by CVE-2020-2021 immediately, especially if SAML is in use. Foreign APTs will likely….
security.paloaltonetworks.com
When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option is disabled (unchecked), improper verification of signatures in PAN-OS...
0
396
0
Microsoft has released ADV200006 about an 0day vulnerability being exploited in the wild in Microsoft Windows Adobe Type Manager Type 1 font parsing. There are almost as many workarounds provided as there are attack vectors!.
kb.cert.org
Microsoft Windows Type 1 font parsing remote code execution vulnerabilities
0
12
18
Disable SMB compression and block SMB both inbound AND outbound to help prevent exploitation of an unpatched "wormable" vulnerability in Microsoft Windows SMBv3. ADV200005 CVE-2020-0796 VU#872016.
kb.cert.org
Microsoft SMBv3 compression remote code execution vulnerability
2
57
57
VU#338824.Microsoft Internet Explorer is being actively exploited in the wild using a new unpatched vulnerability in the Scripting Engine. Disable access to JScript.dll as a workaround.
kb.cert.org
Microsoft Internet Explorer Scripting Engine memory corruption vulnerability
1
17
15
If you use "Disable all macros without notification" in Microsoft Office for Mac, you may be in for an unpleasant surprise. XLM macros in SYLK (.SLK) content will run without any prompting. This allows for arbitrary code execution without any clicks.
kb.cert.org
Microsoft Office for Mac cannot properly disable XLM macros
0
6
5
RT @CVEannounce: CVE Celebrates 20 Years!.. #cve #cveentries #cveids #cna #vulnerabilities #cybersecurity.
0
15
0
It's important to note that these updates are NOT currently being deployed via Windows Update or Microsoft Update. Despite being actively exploited in the wild, manual actions must be taken to receive the fixes.
Out of band security vulnerability fixes CVE-2019-1367 and CVE-2019-1255 have been released today. For more information please see and .
1
10
14
A user with the ability to run code (php, cgi, etc.) in the context of Apache can escalate privileges to root. CVE-2019-0211.Apply updates to get the fix.
cfreal.github.io
Hacker. Maintainer of
0
3
4