Microsoft Security Bulletin Coverage for August 2023

SonicWall Capture Labs threat research team has analyzed and addressed Microsoft’s security advisories for the month of August 2023.

Netgear ProSAFE NMS300 SQLi Vulnerability

Overview:   SonicWall Capture Labs Threat Research Team has observed the following threat:   The Netgear ProSAFE Network Management System (NMS300) is a centralized and comprehensive management application designed for network administrators. It enables them to discover, […]

A new variant from Chaos Ransomware family surfaces

The SonicWall Capture Labs Research team has received a sample of a new variant from Chaos Ransomware family which is a customizable ransomware builder that emerged in underground forums, by falsely marketing itself as the […]

XWiki RCE Vulnerability

Overview:   SonicWall Capture Labs Threat Research Team has observed the following threat:   XWiki is recognized as a second-generation wiki platform, bringing together the conventional wiki functionality and the unique potential of an application development platform. […]

TP-Link Archer Command Injection Vulnerability

TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 contains a command injection vulnerability in the web management interface. By injecting malicious commands, the attacker could execute them as the root user, potentially gaining unauthorized access and control over the router.

This post is also available in: Portuguese (Brazil) French German Japanese Korean Spanish