privileges vulnerability
RIM warns on BlackBerry PDF flaw
News If you can execute with the privileges of BES, it's significant what you could do on an email server or another domain name service. Maarten Van Horenbeeck, security researcher at the Internet Storm Center, said: "This vulnerability is.one of those... [17 Jul 2008]
Patch Management with WinReporter and RemoteExec
White Paper Even though it is good practice to restrictively grant privileges to users, enable relevant auditing events, and disable unnecessary services, these one-time measures are not sufficient. Vulnerability assessment is central to network security. [03 Jul 2008]
Hacking a Mac 'just works', says researcher
News Suid stands for "set user ID" and is used to temporarily elevate privileges to perform a specific task such as running executables. Miller and his colleagues at Independent Security Evaluators discovered the first known vulnerability within the... [14 Aug 2007]
iPhone 'data-stealing' hack claimed
News The security researchers claim the iPhone's "most glaring" security fault is that all major processes run with administrative privileges. The researchers wrote in a whitepaper: "These weaknesses allow for the easy development of stable exploit code... [24 Jul 2007]
Apple fixes 'hack-a-Mac hole'
News Version 1.1 of the 2007-004 patch repairs a couple of problems with the original fix, which may cause wireless connections to drop and allow limited FTP users access beyond their privileges on an Apple FTPServer, Apple said in another alert. [02 May 2007]
Pair of flaws pop up in Firefox
News The attacker-supplied file would then be loaded thanks to the browser flaw, which could give the attacker local file read privileges. With this vulnerability, an adept phisher could fool the browser into believing a fraudulent site is actually... [08 Feb 2007]
Warning over "critical" QuickTime hole
News LMH, the alias of one of the two security researchers behind the Month of the Apple Bugs, said: "The risk is having your system compromised by a remote attacker, who can perform any operation under privileges of your user account. [03 Jan 2007]
Microsoft points to early Vista flaw
News Mike Reavey, operations manager at Microsoft's Security Response Center, revealed last Friday that Vista is vulnerable to a flaw that allows a malicious hacker to escalate user privileges within several versions of Windows. [28 Dec 2006]
Old malware can affect Vista, admits Microsoft
News Microsoft stopped short of blaming third-party email clients for the problem but said that User Account Control (UAC) - which limits users' ability to install applications unless they have administrator privileges - can "help to provide better... [05 Dec 2006]
"Highly critical" Mac OS X kernel hole unearthed
News In addition to being used to compromise a computer, the flaw could be exploited by malicious local users to gain escalated privileges to the system, the security company said. The vulnerability could be exploited remotely, as Apple's Safari web... [22 Nov 2006]
Mac OS X exploit in the wild
News The vulnerability could be exploited by a local attacker or someone with privileges to remotely log on to a machine. The code takes advantage of a weakness in core parts of Mac OS X and could let a user gain additional privileges. [03 Oct 2006]
Intel patches Centrino flaws
News Another security hole makes the system vulnerable to attacks that let a malicious user gain additional privileges, according to security experts at F-Secure and Sans Internet Storm Center. The vulnerability involving the Intel Centrino wireless... [03 Aug 2006]
OpenOffice patches trio of holes
News The user is not asked or notified, and the macro has full access to system resources with current user's privileges, again enabling it to read or send private data, and destroy or replace files. A buffer overflow vulnerability has also been... [05 Jul 2006]
Microsoft issues largest patch batch to date
News Microsoft also issued a fix for an important flaw in Windows' Server Message Block component that could enable attackers to elevate their level of system privileges. Amol Sarwate, the manager of the Vulnerability Management Lab at flaw management... [14 Jun 2006]
A Black-Box Tracing Technique to Identify Causes of Least-Privilege Incompatibilities
White Paper The possession of Administrator privileges by every user significantly increases the vulnerability of Windows systems. Most Windows users run all the time with Administrator privileges, equivalent to root privileges on a UNIX system. [21 Apr 2006]
Keep updated for stories matching privileges vulnerability via RSS
