Posts tagged Risk Management

Exposure Management
CVE-2021-3779: Ruby-MySQL Gem Client File Read (FIXED)
Tod Beardsley

Exposure Management
CVE-2022-31749: WatchGuard Authenticated Arbitrary File Read/Write (Fixed)
Jake Baines

Exposure Management
CVE-2022-27511: Citrix ADM Remote Device Takeover
Erick Galinkin

Threat Research
CVE-2022-32230: Windows SMB Denial-of-Service Vulnerability (FIXED)
Spencer McIntyre

Industry Trends
The Hidden Harm of Silent Patches
Tod Beardsley

Exposure Management
Active Exploitation of Confluence CVE-2022-26134
Rapid7

Exposure Management
CVE-2022-30190: "Follina" Microsoft Support Diagnostic Tool Vulnerability
Rapid7

Exposure Management
CVE-2022-22977: VMware Guest Authentication Service LPE (FIXED)
Jake Baines

Exposure Management
CVE-2022-22972: Critical Authentication Bypass in VMware Workspace ONE Access, Identity Manager, and vRealize Automation
Jake Baines

Vulnerabilities and Exploits
CVE-2022-30525 (FIXED): Zyxel Firewall Unauthenticated Remote Command Injection
Jake Baines

Exposure Management
Active Exploitation of F5 BIG-IP iControl REST CVE-2022-1388
Ron Bowes

Exposure Management
Widespread Exploitation of VMware Workspace ONE Access CVE-2022-22954
Caitlin Condon

Exposure Management
Opportunistic Exploitation of WSO2 CVE-2022-29464
Jake Baines

Products and Tools
What's New in InsightVM and Nexpose: Q1 2022 in Review
Roshnee Mistry Shah

Exposure Management
CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed)
Jake Baines

Exposure Management
Spring4Shell: Zero-Day Vulnerability in Spring Framework (CVE-2022-22965)
Rapid7

Exposure Management
Analyzing the Attack Landscape: Rapid7’s 2021 Vulnerability Intelligence Report
Caitlin Condon

Exposure Management
Log4Shell 2 Months Later: Security Strategies for the Internet's New Normal
Jesse Mack

Exposure Management
Dropping Files on a Domain Controller Using CVE-2021-43893
Jake Baines

Exposure Management
CVE-2021-20038..42: SonicWall SMA 100 Multiple Vulnerabilities (FIXED)
Jake Baines

Vulnerabilities and Exploits
Using InsightVM to Find Apache Log4j CVE-2021-44228
Greg Wiseman