Malware Devil

Monday, March 15, 2021

Buffalo Public Schools Cancel Classes Due to Ransomware

Register for Dark Reading Newsletters

Subscribe to Newsletters

White Papers

Video

Cartoon Contest

Current Issue

image2021 Top Enterprise IT TrendsWe’ve identified the key trends that are poised to impact the IT landscape in 2021. Find out why they’re important and how they will affect you today!
image

Flash Poll

How Enterprises are Developing Secure Applications
How Enterprises are Developing Secure Applications
Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.
image

Twitter Feed

Dark Reading - Bug Report

Bug Report

Enterprise Vulnerabilities
From DHS/US-CERT’s National Vulnerability Database
CVE-2020-29553
PUBLISHED: 2021-03-15

The Scheduler in Grav CMS through 1.7.0-rc.17 allows an attacker to execute a system command by tricking an admin into visiting a malicious website (CSRF).

CVE-2021-23879
PUBLISHED: 2021-03-15

Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and protect the execution path. Local admin privilege…

CVE-2021-3150
PUBLISHED: 2021-03-15

A cross-site scripting (XSS) vulnerability on the Delete Personal Data page in Cryptshare Server before 4.8.0 allows an attacker to inject arbitrary web script or HTML via the user name. The issue is fixed with the version 4.8.1

CVE-2021-28363
PUBLISHED: 2021-03-15

The urllib3 library 1.26.x before 1.26.4 for Python omits SSL certificate validation in some cases involving HTTPS to HTTPS proxies. The initial connection to the HTTPS proxy (if an SSLContext isn’t given via proxy_config) doesn’t verify the hostname of the certificate. This means certificates for d…

CVE-2021-27890
PUBLISHED: 2021-03-15

SQL Injection vulnerablity in MyBB before 1.8.26 via theme properties included in theme XML files.

The post Buffalo Public Schools Cancel Classes Due to Ransomware appeared first on Malware Devil.



https://malwaredevil.com/2021/03/15/buffalo-public-schools-cancel-classes-due-to-ransomware-2/?utm_source=rss&utm_medium=rss&utm_campaign=buffalo-public-schools-cancel-classes-due-to-ransomware-2

No comments:

Post a Comment

Barbary Pirates and Russian Cybercrime

In 1801, the United States had a small Navy. Thomas Jefferson deployed almost half that Navy—three frigates and a schooner—to the Barbary C...