New episode “In The Trend of VM” (#11): vulnerabilities that became trending in December and the final report on trending vulnerabilities for 2024. I made this episode exclusively for the Telegram channel @avleonovcom “Vulnerability Management and More”.
Video on YouTube, LinkedIn
Post on Habr (rus)
Digest on the PT website
Content:
00:00 Greetings
00:28 Elevation of Privilege – Windows Kernel Streaming WOW Thunk Service Driver (CVE-2024-38144)
01:30 Elevation of Privilege – Windows Common Log File System Driver (CVE-2024-49138)
02:37 Remote Code Execution – Apache Struts (CVE-2024-53677)
03:31 Authentication Bypass – Hunk Companion WordPress plugin (CVE-2024-11972)
04:44 Trending vulnerabilities for 2024
08:10 Channel mascot