SmartStateIndia
News

Tenable Advises Enterprises to Patch ZeroLogon and HP Device Manager Vulnerabilities

According to a tweet from Microsoft’s Security Intelligence team, they’ve observed that a nation-state actor has been leveraging CVE-2020-1472, a critical elevation of privilege vulnerability in Netlogon. Researchers named this vulnerability “Zerologon” because of how the exploit abuses the initialisation vectors within the logon process, which are set to zeros rather than being randomly generated.

Please find below a comment from Rody Quinlan, Security Response Manager at Tenable:
“Given the large availability of working proof of concepts (PoCs), and overall impact from exploitation, it’s unsurprising that known groups are looking to take advantage of this Netlogon vulnerability, dubbed Zerologon. Exploitation, if successful, allows the complete takeover of the Windows domain – that’s the virtual equivalent of the keys to the kingdom. A quick search on GitHub reveals that there are currently at least 40 repositories containing PoC code relating to this flaw. There are also working exploit scripts that defenders and attackers alike can utilize to exploit this vulnerability. This is going to be one of the more favourable vulnerabilities this year for malicious parties and it’s imperative that organizations either patch or take remediative action immediately to prevent systems from being compromised.”

HP recently published a security bulletin to address multiple vulnerabilities in HP Device Manager, software that’s used to manage HP Thin Clients remotely. The three vulnerabilities disclosed to HP by security researcher Nick Bloor warned that a combination of these vulnerabilities could allow an attacker to gain remote command execution on the vulnerable system through the HP Device Manager.

Please find below a comment from Satnam Narang, Staff Research Engineer at Tenable. A full analysis of the vulnerabilities is available here.

“HP Device Manager is a popular software solution used to manage HP Thin Clients remotely. The three vulnerabilities disclosed in HP’s recent security bulletin by themselves are notable. However, a pair of the flaws, CVE-2020-6926 and CVE-2020-6927, when combined could allow an attacker to gain remote command execution on the vulnerable system through the HP Device Manager. HP has so far released patches for the 5.0.x branch of HP Device Manager, so organizations using this particular branch release should upgrade to 5.0.4 as soon as possible. If an organization is using a previous version of HP Device Manager, there are mitigation steps in HP’s security bulletin that can be taken to protect against these attacks until a patch becomes available.”

Related posts

DroneAcharya Aerial Innovations debuts at 88% premium on BSE SME Bourse Co’s shares hit a 5% upper circuit to touch a high of Rs 107.10 a share

SSI Bureau

iValue Partners with Sumo Logic

SSI Bureau

Fortinet Further Extends the Convergence of Networking and Security to Remote Users with Enhancements to its Single-Vendor SASE Solution

SSI Bureau

19 comments

Fowfsr March 9, 2024 at 11:32 pm

purchase atorvastatin online atorvastatin 80mg brand atorvastatin cheap

Reply
Bczaff March 18, 2024 at 3:44 pm

ciprofloxacin order online – buy amoxicillin 500mg generic
erythromycin cost

Reply
Risbwl March 20, 2024 at 7:11 pm

ivermectin 12mg pills – buy generic sumycin for sale sumycin 250mg tablet

Reply
Cagcmo March 23, 2024 at 1:50 pm

furosemide ca – order coumadin online generic capoten

Reply
Nubctf March 26, 2024 at 2:49 pm

purchase glucophage without prescription – purchase lincomycin generic buy lincomycin tablets

Reply
Fjiyai March 26, 2024 at 7:51 pm

order retrovir sale – buy glucophage online cheap cheap zyloprim

Reply
Bubmab March 29, 2024 at 1:25 am

clozaril 100mg tablet – order clozapine generic buy generic famotidine 20mg

Reply
Qntqph March 31, 2024 at 7:39 pm

anafranil for sale online – asendin 50mg cheap sinequan 75mg without prescription

Reply
Ncntbi April 4, 2024 at 10:28 am

buy generic amoxicillin for sale – buy ceftin pill baycip pill

Reply
Tidbxr April 9, 2024 at 8:02 pm

cleocin 300mg pill – oral cefixime 100mg chloramphenicol usa

Reply
Ixupmj April 13, 2024 at 11:17 am

cost albuterol – buy theophylline 400 mg online theo-24 Cr usa

Reply
Fcsstu April 13, 2024 at 2:24 pm

ivermectin dosage – buy ivermectin uk order cefaclor without prescription

Reply
Ulcbqp April 17, 2024 at 7:59 pm

order glyburide 5mg without prescription – order micronase 2.5mg buy forxiga cheap

Reply
Qbfief April 19, 2024 at 8:56 pm

repaglinide pill – repaglinide online buy empagliflozin 10mg generic

Reply
Rhzlnf April 20, 2024 at 7:42 pm

glycomet 500mg generic – order sitagliptin 100mg online order acarbose 50mg online

Reply
Wnswly April 24, 2024 at 5:33 pm

brand ketoconazole – how to get mentax without a prescription order sporanox without prescription

Reply
Ttlbcz April 26, 2024 at 7:32 pm

brand digoxin – digoxin 250 mg without prescription purchase furosemide online

Reply
Esalad April 26, 2024 at 8:20 pm

famciclovir 500mg generic – order valaciclovir 1000mg online cheap buy valcivir paypal

Reply
Ndfohj April 28, 2024 at 9:36 pm

buy hydrochlorothiazide without a prescription – zebeta tablet order bisoprolol for sale

Reply

Leave a Comment

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Accept Read More