Microsoft sat on critical flaw for two years 

Microsoft sat on critical flaw for two years

Patch Tuesday ActiveX flaw reported in 2007.
Microsoft pushes out ATL, ActiveX fixes 

Microsoft pushes out ATL, ActiveX fixes

The software giant has cleaned up its flawed Active Template Library, in addition to issuing a host of other patches.
Microsoft distributes six patches for nine vulnerabilities 

Microsoft distributes six patches for nine vulnerabilities

Microsoft has plugged two zero-day exploits, along with a number of other vulnerabilities, as part of its monthly patch cycle.
Another ActiveX zero-day bug from Microsoft 

Another ActiveX zero-day bug from Microsoft

Microsoft is trying to combat another ActiveX vulnerability being actively exploited -- the second in a week.
DirectShow, ActiveX zero-days among planned Microsoft fixes 

DirectShow, ActiveX zero-days among planned Microsoft fixes

Microsoft is hoping it can pull off a quick turnaround for a fix of a zero-day ActiveX vulnerability that was only disclosed this week.
Microsoft warns of Video ActiveX control flaw 

Microsoft warns of Video ActiveX control flaw

Microsoft has warned of a zero-day ActiveX vulnerability that is being exploited in limited attacks against Windows XP and Server 2003 users.
Vulnerability in WebEx ActiveX control 

Vulnerability in WebEx ActiveX control

A new buffer overflow vulnerability was discovered in an Active X Control used by Cisco WebEx Meeting Manager, which may result in a denial of service or remote code execution, ...
Attackers ramp up zero-day ActiveX exploits 

Attackers ramp up zero-day ActiveX exploits

Roughly one month after Microsoft disclosed that attackers were exploiting a zero-day Active X vulnerability, the attacks are multiplying; but mostly in China.
Microsoft investigates ActiveX public exploits 

Microsoft investigates ActiveX public exploits

Microsoft has revealed that attackers are exploiting a zero-day ActiveX vulnerability in Microsoft Access.
Researcher discovers RealPlayer ActiveX bug 

Researcher discovers RealPlayer ActiveX bug

A security researcher said Monday he has discovered an unpatched ActiveX vulnerability in RealPlayer, the popular media player, and is working on an exploit.
Active exploits targeting social networking ActiveX flaw 

Active exploits targeting social networking ActiveX flaw

Users who remain vulnerable to an ActiveX photo uploader vulnerability used on many websites are now being targeted in active attacks, researchers from Symantec said today.
ActiveX control flaws found in Yahoo! Music Jukebox: FrSIRT 

ActiveX control flaws found in Yahoo! Music Jukebox: FrSIRT

Critical ActiveX control flaws have been detected in the Yahoo! Music Jukebox, which like vulnerabilities reported last week in MySpace and Facebook image uploaders, may permit ...
Critical ActiveX control flaw found in image uploader sent to users by Facebook, MySpace  

Critical ActiveX control flaw found in image uploader sent to users by Facebook, MySpace

Symantec has warned that a critical flaw in the ActiveX control of image uploaders that have been widely distributed to users of popular social networking sites Facebook and ...
ActiveX vulnerability hits Yahoo Widgets 

ActiveX vulnerability hits Yahoo Widgets

Researchers at security research firm Secunia have revealed a "highly critical" security vulnerability in Yahoo's desktop Widgets. Widgets are software plug-ins that allow ...
Yahoo patches Messenger ActiveX control flaws 

Yahoo patches Messenger ActiveX control flaws

Yahoo patched two vulnerabilities in Messenger's ActiveX control, which were disclosed by a hacker offering proof-of-concept exploit code earlier this week.
Month of ActiveX Bugs project reveals Office 2000 flaw 

Month of ActiveX Bugs project reveals Office 2000 flaw

Microsoft is looking into reports of a flaw in Office 2000 disclosed as part of the Month of ActiveX Bugs (MoAxB) project.
Two Office flaws found in Month of ActiveX bugs  

Two Office flaws found in Month of ActiveX bugs

A hacker known as shinnai kicked off his "Month of ActiveX Bugs" (MoAxB) project with a bang by exposing a number of severe vulnerabilities affecting OCX controls in Microsoft ...
Yahoo updates to patch Messenger ActiveX vulnerability 

Yahoo updates to patch Messenger ActiveX vulnerability

Yahoo has updated its instant messaging platform to protect against a vulnerability that can allow remote attacks.
Microsoft to slow down ActiveX controls 

Microsoft to slow down ActiveX controls

An ongoing patent infringement case will force Microsoft to weaken ActiveX controls within Internet Explorer (IE) within the next month.
1
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read