SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
EsteemAudit – Potential for Another WannaCry-like Attacks
There may be a possible ‘second wave’ of massive global cyber attack, as SMB (Server Message Block) . It was not the only network protocol whose zero-day exploits created by NSA exposed in the Shadow Brokers release. A vulnerability management tool helps detecte these attacks. The WannaCry emergency...

CVE Research
Open-Source Vulnerability Scanners: How a Free Tool Carries Hidden Challenges
Over the past 15 years, vulnerability management has evolved from a simple process to a complex business practice. The increasing number of vulnerabilities, rising cyber-attacks, and software vulnerabilities as the leading cause of breaches have highlighted the limitations of open source vulnerabili...

CVE Research
Control+Alt+Defeat Vulnerabilities in 5 mins
The fight against vulnerabilities and threats is constant. The real race is between cyber-attackers and organizations constantly trying to stay ahead. Attackers give their all to penetrate enterprises’ cyber defense while enterprises defend their IT infrastructure.

CVE Research
Exim Mail Server Vulnerability: A Critical Threat Affecting Millions
A critical vulnerability (CVE-2024-39929) in the Exim mail transfer agent could enable attackers to deliver malicious attachments to users’ inboxes. The flaw, rated 9.1 out of 10 on the CVSS scale, affects versions up to 4.97.1 and has been fixed in version 4.98.
Freefloat FTP Server POST Auth Multiple Commands Buffer Overflow Vulnerabilities
CVE Research
Freefloat FTP Server POST Auth Multiple Commands Buffer Overflow Vulnerabilities
SecPod Research Team member (Veerendra G.G) has found multiple Buffer Overflow vulnerabilities in Freefloat FTP Server that mitigated using a vulnerability management tool. The flaws are caused due to input validation errors while processing DELE, MDTM, RETR, RMD, RNFR, RNTO, STOU, STOR, SIZE, APPE,...
SCAP Feed Release : 01-Jun-2018
CVE Research
SCAP Feed Release : 01-Jun-2018
The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update. This is a list of vulnerabilities detected using a vulnerability management tool.

CVE Research
Patch Tuesday: Microsoft Security Bulletin Summary for September 2020
Microsoft Patch Tuesday September 2020 has released September Patch Tuesday security updates with a total release of 129 vulnerabilities, In which 23 are classified as Critical with Remote Code Execution(RCE) 105 are classified as important and 1 is classified as moderate that reside in the Microsof...


