Risk
11/16/2012
11:01 AM
Dark Reading
Dark Reading
Slideshows
Connect Directly
RSS
E-Mail
50%
50%
Repost This

Slide Show: The Vulnerability 'Usual Suspects' Of 2012

Here's the list of applications, companies, and targets that dominated vulnerability and exploit headlines in 2012
Previous
1 of 10
Next


According to Kaspersky Lab Securelist, Adobe Acrobat Reader was only behind Java in the list of applications with the most targeted vulnerabilities last quarter. Attacks against the PDF program made up 25 percent of all Web exploits. Creativity is rewarded in attacks against PDFs. For example, at the BSides conference this year, one researcher demonstrated how SQL injection attacks could be made against websites serving PDFs that could offer up a number of nasty malformed versions of legitimate-seeming documents.

Previous
1 of 10
Next
Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Latest Comment: LOL.
Current Issue
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-6212
Published: 2014-04-19
Unspecified vulnerability in HP Database and Middleware Automation 10.0, 10.01, 10.10, and 10.20 before 10.20.100 allows remote authenticated users to obtain sensitive information via unknown vectors.

CVE-2013-6213
Published: 2014-04-19
Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 Patch 1 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1833.

CVE-2013-6214
Published: 2014-04-19
Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and 10.10 allows remote authenticated users to obtain sensitive information via unknown vectors, aka ZDI-CAN-2042.

CVE-2013-6215
Published: 2014-04-19
Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 10.01 and 10.10 allows remote authenticated users to execute arbitrary code via unknown vectors, aka ZDI-CAN-1977.

CVE-2013-6218
Published: 2014-04-19
Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x, 9.1x, and 9.2x allows remote attackers to execute arbitrary code via unknown vectors.

Best of the Web