SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
Critical Vulnerabilities Found in VMware vCenter Server and Cloud Foundation
A recent surge of critical remote code execution (RCE) vulnerabilities has been discovered in VMware vCenter Server and Cloud Foundation products. These vulnerabilities can be triggered by remote attackers who craft and send specific network packets to the vCenter Server via the DCERPC protocol. Suc...

CVE Research
Windows CSRSS Elevation of Privilege Vulnerability Under Active Exploitation: CVE-2022-22047
Microsoft recently patched a high severity security vulnerability in its July 2022 Patch Tuesday. This security vulnerability is wildly exploited and is assigned with an identifier CVE-2022-22047 and has a CVSS score of 7.8. This flaw was discovered by Microsoft’s internal security teams using their...

CVE Research
Juniper Networks Rolls Out Essential Security Patch for Router Flaw: CVE-2024-2973
Juniper Networks has issued an out-of-band security update to address a critical flaw that poses a significant security risk to its routers. The vulnerability CVE-2024-2973, boasts a CVSS score of 10.0, marking it as exceptionally severe.

CVE Research
WannaCry Ransomware: Digital example of a perfect storm
WannaCry (also known as Wana Decrypt0r 2.0, Wannacryptor, WannaCrypt, wana Decryptor) ransomware disrupts 2-3 million devices in around 150 countries, taking important files hostage and demands a ransom of $600 worth of bitcoins. Vulnerability Management Software can tackle these issues.





