CVE-2017-16670

The project import functionality in SoapUI 5.3.0 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL project file.Read More ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2017-16670

The project import functionality in SoapUI 5.3.0 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL project file.Read More ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Intel Active Management Technology – System Privileges

Post ContentRead More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

OpenJDK 8 regression

## Releases * Ubuntu 17.04 * Ubuntu 16.04 ESM ## Packages * openjdk-8 - Open Source Java implementation USN-3366-1 fixed vulnerabilities in OpenJDK 8. Unfortunately, that update introduced a reg ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

FireEye Uncovers CVE-2017-8759: Zero-Day Used in the Wild to Distribute FINSPY

FireEye recently detected a malicious Microsoft Office RTF document that leveraged [CVE-2017-8759](), a SOAP [WSDL]() parser code injection vulnerability. This vulnerability allows a malicious actor t ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

FireEye Uncovers CVE-2017-8759: Zero-Day Used in the Wild to Distribute FINSPY

FireEye recently detected a malicious Microsoft Office RTF document that leveraged [CVE-2017-8759](), a SOAP [WSDL]() parser code injection vulnerability. This vulnerability allows a malicious actor t ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Microsoft .NET framework SOAP Moniker PrintClientProxy remote code execution vulnerability

### Overview The Microsoft .NET framework fails to properly parse WSDL content, which can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system. ### Description The ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Immunity Canvas: OFFICE_WSDL

**Name**| office_wsdl ---|--- **CVE**| CVE-2017-8759, CVE-2017-8570 **Exploit Pack**| [CANVAS]() **Description**| Microsoft Office Moniker/WSDL C# Injection **Notes**| CVE Name: CVE-2017-8759, CVE- ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Back to Main

Subscribe for the latest news: