SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
Microsoft September Patch Tuesday Addresses 60 CVEs Including 3 Critical
Microsoft Patch Tuesday September 2021 security update fixes a total of 60 vulnerabilities, which include Three CVEs rated as critical and the rest rated as important. The products covered in September’s security update include Microsoft Office, Windows Common Log File System Driver, Windows Print S...

CVE Research
From Vulnerability Detection to Remediation: The SanerNow Way
According to Gartner, vulnerabilities are the prime cause of the majority of security breaches today. Although most of these are not zero days, the firm says that the security teams and IT professionals will already know most of the exploited vulnerabilities. A big question arises now on why securit...

CVE Research
Pile of Vulnerabilities Haunting You? Learn How Brad & Smith Mastered Vulnerability Management Use Cases
Brad and Smith are security administrators of an enterprise with 2000 devices. One of their prime responsibilities is to manage vulnerabilities in their network. With only two people at work and 2000 devices spread across multiple remote locations, both Brad and Smith had a hard time. Brad takes up ...

CVE Research
How Continuous Automated Vulnerability Management Differs from Traditional Programs
Vulnerability management services should offer end-to-end solutions that ensure you have a clear understanding of the cybersecurity risks. Security flaws that pose the highest risk to your enterprise can be addressed immediately. There are different types of vulnerability management services through...

CVE Research
Organized Cyber Crime In The Digital Era, Not Your Regular Mafia
Cyberattacks have been around for over 30 years now. Organizations have witnessed and lived through the devastating effect of these attacks for quite some time now. When the pandemic hit the world, different spheres of life, including the workforce, incurred huge losses. With WFH and hybrid workforc...

CVE Research
Latest Trends in IT Security Software
The worldwide web is arguably the best source of information and opportunities currently. On the other hand, there are countless threats looming at every nook and cranny of the web as well. The truth is that everyone is at risk when going online. This includes private individuals, small businesses, ...
WordPress HTML5 MP3 Player with Playlist plugin XSS and SQL Injection Vulnerabilities
CVE Research
WordPress HTML5 MP3 Player with Playlist plugin XSS and SQL Injection Vulnerabilities
SecPod Research Team member (Thanga Prakash) has found Multiple Cross-site Scripting Vulnerabilities and SQL injection vulnerability in WordPress HTML5 MP3 Player with Playlist plugin. The vulnerability is caused by improper validation of various parameters in various pages. This may allow an attack...


