privileges vulnerability

RIM warns on BlackBerry PDF flaw

News If you can execute with the privileges of BES, it's significant what you could do on an email server or another domain name service. Maarten Van Horenbeeck, security researcher at the Internet Storm Center, said: "This vulnerability is.one of those... [17 Jul 2008]

Patch Management with WinReporter and RemoteExec

White Paper Even though it is good practice to restrictively grant privileges to users, enable relevant auditing events, and disable unnecessary services, these one-time measures are not sufficient. Vulnerability assessment is central to network security. [03 Jul 2008]

Hacking a Mac 'just works', says researcher

News Suid stands for "set user ID" and is used to temporarily elevate privileges to perform a specific task such as running executables. Miller and his colleagues at Independent Security Evaluators discovered the first known vulnerability within the... [14 Aug 2007]

iPhone 'data-stealing' hack claimed

News The security researchers claim the iPhone's "most glaring" security fault is that all major processes run with administrative privileges. The researchers wrote in a whitepaper: "These weaknesses allow for the easy development of stable exploit code... [24 Jul 2007]

Apple fixes 'hack-a-Mac hole'

News Version 1.1 of the 2007-004 patch repairs a couple of problems with the original fix, which may cause wireless connections to drop and allow limited FTP users access beyond their privileges on an Apple FTPServer, Apple said in another alert. [02 May 2007]

Pair of flaws pop up in Firefox

News The attacker-supplied file would then be loaded thanks to the browser flaw, which could give the attacker local file read privileges. With this vulnerability, an adept phisher could fool the browser into believing a fraudulent site is actually... [08 Feb 2007]

Warning over "critical" QuickTime hole

News LMH, the alias of one of the two security researchers behind the Month of the Apple Bugs, said: "The risk is having your system compromised by a remote attacker, who can perform any operation under privileges of your user account. [03 Jan 2007]

Microsoft points to early Vista flaw

News Mike Reavey, operations manager at Microsoft's Security Response Center, revealed last Friday that Vista is vulnerable to a flaw that allows a malicious hacker to escalate user privileges within several versions of Windows. [28 Dec 2006]

Old malware can affect Vista, admits Microsoft

News Microsoft stopped short of blaming third-party email clients for the problem but said that User Account Control (UAC) - which limits users' ability to install applications unless they have administrator privileges - can "help to provide better... [05 Dec 2006]

"Highly critical" Mac OS X kernel hole unearthed

News In addition to being used to compromise a computer, the flaw could be exploited by malicious local users to gain escalated privileges to the system, the security company said. The vulnerability could be exploited remotely, as Apple's Safari web... [22 Nov 2006]

Mac OS X exploit in the wild

News The vulnerability could be exploited by a local attacker or someone with privileges to remotely log on to a machine. The code takes advantage of a weakness in core parts of Mac OS X and could let a user gain additional privileges. [03 Oct 2006]

Intel patches Centrino flaws

News Another security hole makes the system vulnerable to attacks that let a malicious user gain additional privileges, according to security experts at F-Secure and Sans Internet Storm Center. The vulnerability involving the Intel Centrino wireless... [03 Aug 2006]

OpenOffice patches trio of holes

News The user is not asked or notified, and the macro has full access to system resources with current user's privileges, again enabling it to read or send private data, and destroy or replace files. A buffer overflow vulnerability has also been... [05 Jul 2006]

Microsoft issues largest patch batch to date

News Microsoft also issued a fix for an important flaw in Windows' Server Message Block component that could enable attackers to elevate their level of system privileges. Amol Sarwate, the manager of the Vulnerability Management Lab at flaw management... [14 Jun 2006]

A Black-Box Tracing Technique to Identify Causes of Least-Privilege Incompatibilities

White Paper The possession of Administrator privileges by every user significantly increases the vulnerability of Windows systems. Most Windows users run all the time with Administrator privileges, equivalent to root privileges on a UNIX system. [21 Apr 2006]

RSS Keep updated for stories matching privileges vulnerability via RSS


Quick Sitemap Links: