Article 5BBMA When is a remote-code-execution bug in Teams not an RCE? When Microsoft says it isn't, flaw finder discovers

When is a remote-code-execution bug in Teams not an RCE? When Microsoft says it isn't, flaw finder discovers

by
from The Register on (#5BBMA)
'Zero-click, wormable, cross-platform' vuln deemed 'important, spoofing' rather than, say, 'aaargh!'

Updated At some point since August, Microsoft quietly fixed a cross-site scripting (XSS) bug in its Teams web app that opened the door to a serious remote-code-execution (RCE) vulnerability in the Linux, macOS, and Windows desktop versions of its Teams collaboration app....

External Content
Source RSS or Atom Feed
Feed Location http://www.theregister.co.uk/headlines.atom
Feed Title The Register
Feed Link https://www.theregister.com/
Feed Copyright Copyright © 2024, Situation Publishing
Reply 0 comments