CVE-2023-20178 - Escalating to SYSTEM via Cisco AnyConnect Windows Client Update
CVE-2023-20178 is a critical privilege escalation vulnerability that affects the update process in both Cisco AnyConnect Secure Mobility Client Software for Windows and
CVE-2023-32353 - How a Logic Flaw in iTunes for Windows Let Apps Gain Elevated Privileges
On May 18, 2023, Apple silently patched a security vulnerability in iTunes for Windows identified as CVE-2023-32353. This flaw was a logic issue
CVE-2023-32351 - Elevation of Privilege in iTunes for Windows Explored
In May 2023, Apple quietly patched a serious security flaw—CVE-2023-32351—in iTunes 12.12.9 for Windows. This bug could've
CVE-2023-25747 - How a Libaudio Use-After-Free Bug Put Firefox for Android Users at Risk
On February 14, 2023, Mozilla released a security advisory about CVE-2023-25747—a bug that could allow hackers to exploit Firefox for Android through
CVE-2023-29542 - Bypassing File Extension Security in Firefox & Thunderbird with Newlines in Filenames
Security vulnerabilities come in all shapes and sizes—even something as simple as a “newline” (that’s \n) in a filename can slip through the
Episode
00:00:00
00:00:00