# Exploit Title: EasyPHP Webserver 14.1 - Multiple Vulnerabilities (RCE andPath Traversal)# Discovery by: Rafael Pedrero# Discovery Date: 2022-02-06# Vendor Homepage: https://www.easyphp.org/# Software Link : https://www.easyphp.org/# Tested Version: 14.1# Tested on: Windows 7 and 10# Vulnerability Type: Remote Command Execution (RCE)CVSS v3: 9.8CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HCWE: CWE-78Vulnerability description: There is an OS Command Injection in EasyPHPWebserver
Time to Unplug: WD My Book Live Hard Drives Hit With Data Deletion Exploit
extremetech.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from extremetech.com Daily Mail and Mail on Sunday newspapers.
MyBook Users Urged to Unplug Devices from Internet – Krebs on Security
krebsonsecurity.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from krebsonsecurity.com Daily Mail and Mail on Sunday newspapers.