* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, April 30, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Discover the Best Live and Local Entertainment This Week!

    Ballet Arkansas Debuts ‘Origins’ in North Little Rock as Helena Comes Alive with Jazz on the River

    Eye on Entertainment | Entertainment | news8000.com – news8000.com

    This Intense New HBO Show from the ‘Baby Reindeer’ Creator Is Violent, Thrilling, and Unforgettable

    Matt Katrosar Named Executive VP of Global Advertising & Partnerships at Radial Entertainment

    A Look At Accel Entertainment (ACEL) Valuation After Recent Share Price Momentum – Yahoo Finance

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

    How High Can This Technology Rally Soar?

    Chinese Green Technology Raises National Security Concerns for Europe, Report Warns

    TSS Names Chief Strategy Officer and Chief Technology Officer to Expand AI Infrastructure Push – citybiz

    Innovative Creations: The Art of Crocheted Technology

    Marvell Technology’s Price Target Jumps $21 Following Surge in Sector Momentum

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Discover the Best Live and Local Entertainment This Week!

    Ballet Arkansas Debuts ‘Origins’ in North Little Rock as Helena Comes Alive with Jazz on the River

    Eye on Entertainment | Entertainment | news8000.com – news8000.com

    This Intense New HBO Show from the ‘Baby Reindeer’ Creator Is Violent, Thrilling, and Unforgettable

    Matt Katrosar Named Executive VP of Global Advertising & Partnerships at Radial Entertainment

    A Look At Accel Entertainment (ACEL) Valuation After Recent Share Price Momentum – Yahoo Finance

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

    How High Can This Technology Rally Soar?

    Chinese Green Technology Raises National Security Concerns for Europe, Report Warns

    TSS Names Chief Strategy Officer and Chief Technology Officer to Expand AI Infrastructure Push – citybiz

    Innovative Creations: The Art of Crocheted Technology

    Marvell Technology’s Price Target Jumps $21 Following Surge in Sector Momentum

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Microsoft WordPad Vulnerability Exploited in Widespread Cyberattacks

October 11, 2023
in Technology
Microsoft WordPad Vulnerability Exploited in Widespread Cyberattacks
Share on FacebookShare on Twitter

Microsoft WordPad Vulnerability Exploited in Cyberattacks

Microsoft has released over 100 security updates to address critical vulnerabilities in its products, some of which have already been exploited by cybercriminals.

These security patches come when the world is struggling amidst an increasing wave of cyberattacks. Two vulnerabilities are the most concerning in MS WordPad, which has fallen victim to active attacks.

Malicious players have deployed massive Distributed Denial of Service (DDoS) attacks to exploit the vulnerabilities.

One of the most alarming vulnerabilities is Rapid Reset, tracked as CVE-2023-44487, an HTTP/2 protocol flaw that has been exploited since August.

Amazon, Microsoft, Cloudflare, and Google have scrambled to mitigate the risk and secure their servers from the crippling Rapid Reset attacks. The major tech giants have promptly responded to the vulnerability, considering its severity.

CVE-2023-36563, the other vulnerability, has been publicly disclosed and actively exploited. The flaw in Microsoft WordPad allows malicious players to steal NTLM hashes.

Cybercriminals use two methods to exploit this vulnerability. One involves a rogue or compromised user running a specially crafted application that can lead to the system getting compromised.

The other involves luring victims into opening a malicious file through instant messages or email.

Skype for Business Privilege Escalation Also Under Attack

A privilege escalation vulnerability in Skype for Business, CVE-2023-41763, is also under active attack from the miscreants. An attacker can exploit this flaw by initiating a specially crafted network call to the target server or Skype for Business.

This lets the attacker view sensitive information like IP addresses and port numbers. However, they cannot alter this data.

13 of the October patches have been classified as critical-rated vulnerabilities. Among these, 12 can lead to remote code execution (RCE), which calls for the urgent need for updates.

Among the crucial updates, 20 patches target Message Queuing, with CVE-2023-35349 standing out with a high CVSS severity score of 9.8, potentially allowing RCE without requiring user interaction.

CVE-2023-36778 is yet another crucial vulnerability for organizations using Exchange Server in-house. This Microsoft Exchange Server RCE vulnerability has an 8.0 CVSS rating and is characterized as “exploitation more likely.”

Attackers can exploit this flaw using social engineering. Such access to Exchange Server can lead to unauthorized email access, potential impersonation, and financial data theft.

Citrix, Adobe, and Others are Fixing Patches

Citrix has also released critical patches, addressing a 9.4-rated flaw in its NetScaler ADC and NetScaler Gateway appliances (CVE-2023-4966) that could potentially expose sensitive information.

A denial-of-service bug, CVE-2023-4967, is also affecting these appliances. Thus, users are being urged to patch the flaws immediately. Adobe has addressed 13 vulnerabilities in Bridge, Commerce, and Photoshop.

On the other hand, SAP has released seven security notes. One of these vulnerabilities earned a perfect 10 CVSS score.

Google’s October Android security bulletin addressed 54 flaws, including concerns regarding an Arm driver bug and a critical system flaw (CVE-2023-4863) with the potential for Remote Code Execution (RCE).

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : TechReport – https://techreport.com/news/microsoft-wordpad-vulnerability-exploited-in-widespread-cyberattacks/

Tags: MicrosofttechnologyWordPad
Previous Post

Ripple Vs. SEC Case: Was the Celebration Too Early for the Crypto?

Next Post

Vigil in Washington, D.C., honored victims of the Hamas attack on Israel

How Innovation and Ecological Collapse Shaped the Tropics’ Most Vital Decomposers

April 30, 2026

The Bangui Operation: Unveiling a Dark Tale of Blood, Science, and Biomedical Exploitation

April 30, 2026

Unlock the Universe: An In-Depth Look at the ZWO Seestar S30 Pro Smart Telescope

April 30, 2026

Unlock Vitality: Don’t Miss the Free Senior Health Fair at Tucson American Legion Post 109!

April 30, 2026

Atour details 2025 green operations, workforce and governance – Stock Titan

April 30, 2026

Press Freedom in Crisis: Decline Seen in 100 of 180 Countries Worldwide by 2026

April 30, 2026

Michigan Voters Name Economy Their Top Concern for the 2026 Election

April 30, 2026

Discover the Best Live and Local Entertainment This Week!

April 30, 2026

Blakeman may meet matching funds criteria, review finds – Spectrum News NY1

April 30, 2026

Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

April 30, 2026

Categories

Archives

April 2026
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
27282930  
« Mar    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,193)
  • Economy (1,214)
  • Entertainment (22,089)
  • General (21,255)
  • Health (10,246)
  • Lifestyle (1,224)
  • News (22,149)
  • People (1,214)
  • Politics (1,233)
  • Science (16,428)
  • Sports (21,712)
  • Technology (16,198)
  • World (1,204)

Recent News

How Innovation and Ecological Collapse Shaped the Tropics’ Most Vital Decomposers

April 30, 2026

The Bangui Operation: Unveiling a Dark Tale of Blood, Science, and Biomedical Exploitation

April 30, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version