#wormable

2022-12-19
#Microsoft discloses a new critical #vulnerability (CVE-2022-37958) that rivals #EternalBlue where attackers can do remote code execution without #authentication and is #wormable.

Worst of all, unlike EternalBlue, this new vulnerability works on any network protocol, not just SMB. Microsoft has since patched this vulnerability back in September.

Be sure that all your systems have been patched!

https://arstechnica.com/information-technology/2022/12/critical-windows-code-execution-vulnerability-went-undetected-until-now/

Microsoft advisory: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37958

#Windows #vulnerabilitymanagement #infosec #cybersecurity
Digital skull & bones
2020-10-13

October Patch Tuesday: Microsoft Patches Critical, Wormable RCE Bug - There were 11 critical bugs and six that were unpatched but publicly known in this month's regular... threatpost.com/october-patch-t #securityvulnerabilities #routeradvertisements #remotecodeexecution #publiclydisclosed #vulnerabilities #cve-2020-16898 #cloudsecurity #unpatchedbugs #patchtuesday #websecurity #october2020 #securitybug #microsoft #critical #wormable #patches #tcp/ip

2020-07-14

Microsoft Tackles 123 Fixes for July Patch Tuesday - Eighteen critical bugs, impacting Windows Server, Office and Outlook, were fixed as part of the pa... more: threatpost.com/microsoft-tackl #windowsserversharedstreamlibrary #julypatchtuesday #vulnerabilities #adobecoldfusion #downloadmanager #genuineservice #cve-2020-1350 #cve-2020-1463 #cryptography #mediaencoder #deprecated #wormable #windows #dnsbug #google #tls1.0 #tls1.1

2020-03-11

Wormable, Unpatched Microsoft Bug Threatens Corporate LANs - CVE-2020-0796 affects version 3.1.1 of Microsoft’s SMB file-sharing system and was not included in... more: threatpost.com/wormable-unpatc #securityvulnerability #file-sharingsystem #vulnerabilities #cve-2020-0796 #version3.1.1 #eternalblue #microsoft #unpatched #wannacry #wormable #smb

2020-02-20

Nearly half of hospital Windows systems still vulnerable to RDP bugs - Almost half of connected hospital devices are still exposed to the wormable BlueKeep Windows flaw ... more: nakedsecurity.sophos.com/2020/ #governmentsecurity #operatingsystems #securitythreats #medicaldevices #vulnerability #microsoft #bluekeep #dejablue #wormable #windows #worms #nhs

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst