* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Tuesday, April 7, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Howard Stern’s Former Assistant Exposes Hostile Work Environment and Fraudulent NDAs in Shocking Lawsuit

    Good Night John Boy Returns to Cleveland This May with an Exciting New Shots Bar!

    Renewing Our Commitment to Safer Gaming for All

    Sony Interactive Entertainment Broadens Its Future with Cinemersive Labs Acquisition

    Miami Worldcenter Retail and Entertainment District Undergoes Major Ownership Shakeup

    Caesars Entertainment launches inclusive summer package at 3 Las Vegas properties – FOX5 Vegas

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Amkor Technology to Reveal Exciting First Quarter 2026 Financial Results on April 27, 2026

    Unveiling the Most Exciting Technology Innovations at IMTS 2026

    Taiwan’s Daring Breakthrough in Defense Technology

    Chattahoochee Technical College Elevates Air Conditioning Program with Major YORK Equipment Donation

    How UT Tyler School of Medicine is Transforming Healthcare Training in East Texas with Cutting-Edge 3D Technology

    Forsyth County Deputies Use Cutting-Edge Tracking Technology to End High-Speed Chase with Juvenile Driver

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Howard Stern’s Former Assistant Exposes Hostile Work Environment and Fraudulent NDAs in Shocking Lawsuit

    Good Night John Boy Returns to Cleveland This May with an Exciting New Shots Bar!

    Renewing Our Commitment to Safer Gaming for All

    Sony Interactive Entertainment Broadens Its Future with Cinemersive Labs Acquisition

    Miami Worldcenter Retail and Entertainment District Undergoes Major Ownership Shakeup

    Caesars Entertainment launches inclusive summer package at 3 Las Vegas properties – FOX5 Vegas

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Amkor Technology to Reveal Exciting First Quarter 2026 Financial Results on April 27, 2026

    Unveiling the Most Exciting Technology Innovations at IMTS 2026

    Taiwan’s Daring Breakthrough in Defense Technology

    Chattahoochee Technical College Elevates Air Conditioning Program with Major YORK Equipment Donation

    How UT Tyler School of Medicine is Transforming Healthcare Training in East Texas with Cutting-Edge 3D Technology

    Forsyth County Deputies Use Cutting-Edge Tracking Technology to End High-Speed Chase with Juvenile Driver

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Microsoft WordPad Vulnerability Exploited in Widespread Cyberattacks

October 11, 2023
in Technology
Microsoft WordPad Vulnerability Exploited in Widespread Cyberattacks
Share on FacebookShare on Twitter

Microsoft WordPad Vulnerability Exploited in Cyberattacks

Microsoft has released over 100 security updates to address critical vulnerabilities in its products, some of which have already been exploited by cybercriminals.

These security patches come when the world is struggling amidst an increasing wave of cyberattacks. Two vulnerabilities are the most concerning in MS WordPad, which has fallen victim to active attacks.

Malicious players have deployed massive Distributed Denial of Service (DDoS) attacks to exploit the vulnerabilities.

One of the most alarming vulnerabilities is Rapid Reset, tracked as CVE-2023-44487, an HTTP/2 protocol flaw that has been exploited since August.

Amazon, Microsoft, Cloudflare, and Google have scrambled to mitigate the risk and secure their servers from the crippling Rapid Reset attacks. The major tech giants have promptly responded to the vulnerability, considering its severity.

CVE-2023-36563, the other vulnerability, has been publicly disclosed and actively exploited. The flaw in Microsoft WordPad allows malicious players to steal NTLM hashes.

Cybercriminals use two methods to exploit this vulnerability. One involves a rogue or compromised user running a specially crafted application that can lead to the system getting compromised.

The other involves luring victims into opening a malicious file through instant messages or email.

Skype for Business Privilege Escalation Also Under Attack

A privilege escalation vulnerability in Skype for Business, CVE-2023-41763, is also under active attack from the miscreants. An attacker can exploit this flaw by initiating a specially crafted network call to the target server or Skype for Business.

This lets the attacker view sensitive information like IP addresses and port numbers. However, they cannot alter this data.

13 of the October patches have been classified as critical-rated vulnerabilities. Among these, 12 can lead to remote code execution (RCE), which calls for the urgent need for updates.

Among the crucial updates, 20 patches target Message Queuing, with CVE-2023-35349 standing out with a high CVSS severity score of 9.8, potentially allowing RCE without requiring user interaction.

CVE-2023-36778 is yet another crucial vulnerability for organizations using Exchange Server in-house. This Microsoft Exchange Server RCE vulnerability has an 8.0 CVSS rating and is characterized as “exploitation more likely.”

Attackers can exploit this flaw using social engineering. Such access to Exchange Server can lead to unauthorized email access, potential impersonation, and financial data theft.

Citrix, Adobe, and Others are Fixing Patches

Citrix has also released critical patches, addressing a 9.4-rated flaw in its NetScaler ADC and NetScaler Gateway appliances (CVE-2023-4966) that could potentially expose sensitive information.

A denial-of-service bug, CVE-2023-4967, is also affecting these appliances. Thus, users are being urged to patch the flaws immediately. Adobe has addressed 13 vulnerabilities in Bridge, Commerce, and Photoshop.

On the other hand, SAP has released seven security notes. One of these vulnerabilities earned a perfect 10 CVSS score.

Google’s October Android security bulletin addressed 54 flaws, including concerns regarding an Arm driver bug and a critical system flaw (CVE-2023-4863) with the potential for Remote Code Execution (RCE).

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : TechReport – https://techreport.com/news/microsoft-wordpad-vulnerability-exploited-in-widespread-cyberattacks/

Tags: MicrosofttechnologyWordPad
Previous Post

Ripple Vs. SEC Case: Was the Celebration Too Early for the Crypto?

Next Post

Vigil in Washington, D.C., honored victims of the Hamas attack on Israel

Ecology Group Accelerates Growth with Strategic Acquisition of Leading Ecological Consultancy

April 7, 2026

Mississippi Sound Coalition Unveils Exciting New Science-Based Recommendations

April 7, 2026

Men vs. Women: Science Finally Reveals Who Has Worse Farts!

April 7, 2026

Asics Launches an Exciting New Sequel to Its Most Innovative Lifestyle Sneaker

April 7, 2026

Student Teams Unveil Groundbreaking Solutions to Real-World Challenges at Nexus Summit

April 7, 2026

Were Cockroaches the Only Intruders? Dimon Spots a Malodorous Mammal at the Economy’s Doorstep

April 7, 2026

Howard Stern’s Former Assistant Exposes Hostile Work Environment and Fraudulent NDAs in Shocking Lawsuit

April 7, 2026

US sexual health report card: High pleasure, low testing, stark gender disparities – Medical Xpress

April 7, 2026

Crucial Sales and Property Tax Issues Dominate Tuesday’s St. Louis Municipal Elections

April 7, 2026

Amkor Technology to Reveal Exciting First Quarter 2026 Financial Results on April 27, 2026

April 7, 2026

Categories

Archives

April 2026
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
27282930  
« Mar    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,158)
  • Economy (1,176)
  • Entertainment (22,052)
  • General (20,846)
  • Health (10,212)
  • Lifestyle (1,190)
  • News (22,149)
  • People (1,178)
  • Politics (1,194)
  • Science (16,391)
  • Sports (21,676)
  • Technology (16,158)
  • World (1,168)

Recent News

Ecology Group Accelerates Growth with Strategic Acquisition of Leading Ecological Consultancy

April 7, 2026

Mississippi Sound Coalition Unveils Exciting New Science-Based Recommendations

April 7, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version