* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, March 19, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Foxboro Greenlights Entertainment License for Exciting World Cup Matches at Gillette Stadium

    Oscar Ratings Drop 9% in Conan O’Brien’s Second Year as Host

    Falmouth Chamber Players Orchestra Set to Enchant Audiences with Vibrant Spring Concerts

    Inside the Visionary Leadership Behind the South Carolina Entertainment and Music Hall of Fame

    From Advertising to Immersive Worlds: How Leading Brands Craft Captivating Experiences Like Entertainment Studios

    Adrian Grenier Opens Up About Being Overlooked for ‘Devil Wears Prada 2

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Figure Technology Solutions and Agora Data Join Forces to Transform Auto Loans with Cutting-Edge Blockchain Platform

    Unlocking the Future of Poultry Feed: Innovations, Automation Trends, and Market Forecasts Through 2033

    How Cutting-Edge Technology is Helping Local Police Crack Down on Hit-and-Run Cases

    Inside the birthplace of your favorite technology – The Seattle Times

    Unlock Your Potential and Thrive in Your IT Career

    Consolidated Press International Holdings Ltd. Sells 2,335 Shares of Spotify Technology $SPOT – MarketBeat

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Foxboro Greenlights Entertainment License for Exciting World Cup Matches at Gillette Stadium

    Oscar Ratings Drop 9% in Conan O’Brien’s Second Year as Host

    Falmouth Chamber Players Orchestra Set to Enchant Audiences with Vibrant Spring Concerts

    Inside the Visionary Leadership Behind the South Carolina Entertainment and Music Hall of Fame

    From Advertising to Immersive Worlds: How Leading Brands Craft Captivating Experiences Like Entertainment Studios

    Adrian Grenier Opens Up About Being Overlooked for ‘Devil Wears Prada 2

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Figure Technology Solutions and Agora Data Join Forces to Transform Auto Loans with Cutting-Edge Blockchain Platform

    Unlocking the Future of Poultry Feed: Innovations, Automation Trends, and Market Forecasts Through 2033

    How Cutting-Edge Technology is Helping Local Police Crack Down on Hit-and-Run Cases

    Inside the birthplace of your favorite technology – The Seattle Times

    Unlock Your Potential and Thrive in Your IT Career

    Consolidated Press International Holdings Ltd. Sells 2,335 Shares of Spotify Technology $SPOT – MarketBeat

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Microsoft WordPad Vulnerability Exploited in Widespread Cyberattacks

October 11, 2023
in Technology
Microsoft WordPad Vulnerability Exploited in Widespread Cyberattacks
Share on FacebookShare on Twitter

Microsoft WordPad Vulnerability Exploited in Cyberattacks

Microsoft has released over 100 security updates to address critical vulnerabilities in its products, some of which have already been exploited by cybercriminals.

These security patches come when the world is struggling amidst an increasing wave of cyberattacks. Two vulnerabilities are the most concerning in MS WordPad, which has fallen victim to active attacks.

Malicious players have deployed massive Distributed Denial of Service (DDoS) attacks to exploit the vulnerabilities.

One of the most alarming vulnerabilities is Rapid Reset, tracked as CVE-2023-44487, an HTTP/2 protocol flaw that has been exploited since August.

Amazon, Microsoft, Cloudflare, and Google have scrambled to mitigate the risk and secure their servers from the crippling Rapid Reset attacks. The major tech giants have promptly responded to the vulnerability, considering its severity.

CVE-2023-36563, the other vulnerability, has been publicly disclosed and actively exploited. The flaw in Microsoft WordPad allows malicious players to steal NTLM hashes.

Cybercriminals use two methods to exploit this vulnerability. One involves a rogue or compromised user running a specially crafted application that can lead to the system getting compromised.

The other involves luring victims into opening a malicious file through instant messages or email.

Skype for Business Privilege Escalation Also Under Attack

A privilege escalation vulnerability in Skype for Business, CVE-2023-41763, is also under active attack from the miscreants. An attacker can exploit this flaw by initiating a specially crafted network call to the target server or Skype for Business.

This lets the attacker view sensitive information like IP addresses and port numbers. However, they cannot alter this data.

13 of the October patches have been classified as critical-rated vulnerabilities. Among these, 12 can lead to remote code execution (RCE), which calls for the urgent need for updates.

Among the crucial updates, 20 patches target Message Queuing, with CVE-2023-35349 standing out with a high CVSS severity score of 9.8, potentially allowing RCE without requiring user interaction.

CVE-2023-36778 is yet another crucial vulnerability for organizations using Exchange Server in-house. This Microsoft Exchange Server RCE vulnerability has an 8.0 CVSS rating and is characterized as “exploitation more likely.”

Attackers can exploit this flaw using social engineering. Such access to Exchange Server can lead to unauthorized email access, potential impersonation, and financial data theft.

Citrix, Adobe, and Others are Fixing Patches

Citrix has also released critical patches, addressing a 9.4-rated flaw in its NetScaler ADC and NetScaler Gateway appliances (CVE-2023-4966) that could potentially expose sensitive information.

A denial-of-service bug, CVE-2023-4967, is also affecting these appliances. Thus, users are being urged to patch the flaws immediately. Adobe has addressed 13 vulnerabilities in Bridge, Commerce, and Photoshop.

On the other hand, SAP has released seven security notes. One of these vulnerabilities earned a perfect 10 CVSS score.

Google’s October Android security bulletin addressed 54 flaws, including concerns regarding an Arm driver bug and a critical system flaw (CVE-2023-4863) with the potential for Remote Code Execution (RCE).

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : TechReport – https://techreport.com/news/microsoft-wordpad-vulnerability-exploited-in-widespread-cyberattacks/

Tags: MicrosofttechnologyWordPad
Previous Post

Ripple Vs. SEC Case: Was the Celebration Too Early for the Crypto?

Next Post

Vigil in Washington, D.C., honored victims of the Hamas attack on Israel

David Alexander Marques (1984–2026) – Nature

March 18, 2026

Pew Awards Fellowships to Seven Scientists Advancing Marine Conservation – environment coastal & offshore

March 18, 2026

Science Finally Reveals the Truth Behind Endometriosis’ Most Mysterious Symptoms

March 18, 2026

TalkSPORT Presenter Courageously Shares Cancer Diagnosis and Urges Everyone to Get Checked

March 18, 2026

Star-studded Team USA upset as Venezuela wins first WBC title – The Athletic – The New York Times

March 18, 2026

Service industries drive New York’s economic growth, comptroller reports – WWLP

March 18, 2026

Foxboro Greenlights Entertainment License for Exciting World Cup Matches at Gillette Stadium

March 18, 2026

Community Health Workers are a Focus of Rural Health Transformation Fund Applications? – Georgetown University

March 18, 2026

Thrilling Highlights from the Illinois Election Results

March 18, 2026

Figure Technology Solutions and Agora Data Join Forces to Transform Auto Loans with Cutting-Edge Blockchain Platform

March 18, 2026

Categories

Archives

March 2026
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
3031  
« Feb    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,125)
  • Economy (1,143)
  • Entertainment (22,019)
  • General (20,483)
  • Health (10,181)
  • Lifestyle (1,157)
  • News (22,149)
  • People (1,145)
  • Politics (1,161)
  • Science (16,358)
  • Sports (21,644)
  • Technology (16,126)
  • World (1,136)

Recent News

David Alexander Marques (1984–2026) – Nature

March 18, 2026

Pew Awards Fellowships to Seven Scientists Advancing Marine Conservation – environment coastal & offshore

March 18, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version