BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to the Zeroday Tracker: Your Vulnerability Watchlist

Get critical updates on the latest zeroday threats, including impact, mitigation and protection information - only from BeyondTrust.

Filter: view all
microsoft

Microsoft Windows Kernel Privilege Escalation

Disclosed November 27, 2013    No Patch Available
Vendors: Microsoft
Vulnerability Severity: High
Exploit Impact: Elevation of Privilege
Exploit Availability:
Audacious

Audacious MP3 File Denial of Service

Disclosed November 26, 2013    Zeroday : 333 days
Vendors: Audacious
Vulnerability Severity: Medium
Exploit Impact: Denial of Service
Exploit Availability: Publicly Available
cisco

Cisco IOS ICMP Denial of Service Vulnerability

Disclosed November 22, 2013    Zeroday : 337 days
Vendors: Cisco
Vulnerability Severity: Medium
Exploit Impact: Denial of Service
Exploit Availability: No Exploit Available
intergraph

ERDAS ER Viewer Insecure Library Loading

Disclosed November 21, 2013    Zeroday : 338 days
Vendors: Intergraph Corporation
Vulnerability Severity: High
Exploit Impact: Remote Code Execution
Exploit Availability: Publicly Available
microsoft

Microsoft Windows GDI+ Remote Code Execution

Disclosed November 5, 2013    Fully Patched
Vendors: Microsoft
Vulnerability Severity: High
Exploit Impact: Remote Code Execution
Exploit Availability:
videochargestudio

Watermark Master WCF File Handling Buffer Overflow

Disclosed October 31, 2013    Zeroday : 359 days
Vendors: VideoCharge
Vulnerability Severity: High
Exploit Impact: Remote Code Execution
Exploit Availability: Publicly Available
netgear

Netgear WNDR3700 Bypass

Disclosed October 31, 2013    Zeroday : 359 days
Vendors: Netgear
Vulnerability Severity: High
Exploit Impact: Security Bypass
Exploit Availability: Publicly Available
asus

ASUS RT-N13U Unpassworded Telnet Administrator Access

Disclosed October 29, 2013    Zeroday : 361 days
Vendors: ASUS
Vulnerability Severity: High
Exploit Impact: Security Bypass
Exploit Availability: Publicly Available
oracle

Oracle Outside In Microsoft Access Remote Code Execution

Disclosed October 15, 2013    Partially Patched
Vendors: Microsoft, miscellaneous vendors, Oracle
Vulnerability Severity: High
Exploit Impact: Remote Code Execution
Exploit Availability: Publicly Available
dlink

Multiple Routers (D-Link/Planex) Coded Backdoor

Disclosed October 12, 2013    No Patch Available
Vendors: D-Link, Planex
Vulnerability Severity: High
Exploit Impact: Remote Code Execution
Exploit Availability: