Alerts

Report Summary SAP August 2024 Security Patch Day

SAP has released security updates to address several vulnerabilities affecting multiple products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products such as SAP BusinessObjects Business Intelligence Platform, SAP Build Apps, SAP BEx Web Java Runtime Export Web Service, SAP S/4 HANA, SAP NetWeaver AS Java, SAP Document Builder, SAP Business […]

Report Summary SAP August 2024 Security Patch Day Read More »

Cisco Security Updates – 08 August 2024

Cisco has released security updates to fix several vulnerabilities across multiple Cisco products. The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks, conduct cross-site scripting attacks, bypass security restrictions, or execute arbitrary commands at the root privilege level and gain access to the affected system by sending specially crafted HTTP

Cisco Security Updates – 08 August 2024 Read More »

Mozilla Firefox Security Updates – 08 August 2024

Mozilla has released an updated Firefox version 129, Firefox ESR version 115.14, and version 128.1 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks, bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities:

Mozilla Firefox Security Updates – 08 August 2024 Read More »

Aruba Security Updates – 07 August 2024

Aruba has released security updates to fix multiple vulnerabilities affecting several HPE Aruba products. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, perform denial of service attacks, or execute arbitrary commands and gain access to the affected products. Sample of the addressed vulnerabilities: 1. Unauthenticated Stack-Based Buffer Overflow (RCE) in the

Aruba Security Updates – 07 August 2024 Read More »

Google Chrome Security Update – 07 August 2024

Google has released an updated Chrome version “127.0.6533.99/.100” for Windows and Mac, and version “127.0.6533.99” for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted Website. Sample of

Google Chrome Security Update – 07 August 2024 Read More »

Progress Telerik Security Update – 29 July 2024

Progress Telerik has released a security update to address a critical vulnerability affecting Progress Telerik Report Server versions prior to 2024 Q2 (10.1.24.709). The addressed vulnerability could allow the remote attacker to execute arbitrary code and gain access to the affected system. Progress Telerik OS Remote Code Execution Vulnerability (CVE-2024-6327): CVSS: 9.9 Attack Vector: Network

Progress Telerik Security Update – 29 July 2024 Read More »

Google Chrome Security Update – 28 July 2024

Google has released an updated Chrome version “127.0.6533.72/73” for Windows, and Mac, and version “127.0.6533.72” for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities:

Google Chrome Security Update – 28 July 2024 Read More »

Microsoft Edge Security Update – 28 July 2024

Microsoft has released an updated Microsoft Edge Stable Channel version “127.0.2651.74” to address multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities:

Microsoft Edge Security Update – 28 July 2024 Read More »

Aruba Security Updates 24 July 2024

Aruba has released security updates to fix multiple vulnerabilities affecting several HPE Aruba products. The addressed vulnerabilities could allow the remote attacker to obtain sensitive information, perform cross-site scripting attacks, or execute arbitrary commands and gain access to the affected products. Sample of the addressed vulnerabilities: 1. EdgeConnect SD-WAN Orchestrator Cross-Site Scripting Vulnerability (CVE-2024-41914): CVSS:

Aruba Security Updates 24 July 2024 Read More »

Play Ransomware – 23 July 2024

Cybersecurity researchers have discovered a new Linux variant of a ransomware strain known as Play that’s designed to target VMware ESXi environments. Play ransomware, also known as PlayCrypt, was first observed in late June 2022 targeting various industries, such as finance, education, healthcare, insurance, technology, and telecommunications. Play ransomware is known for its double extortion

Play Ransomware – 23 July 2024 Read More »

Microsoft Edge Security Update – 21 July 2024

Microsoft has released an updated Microsoft Edge version “126.0.2592.113” to address multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: 1. Microsoft Edge Code

Microsoft Edge Security Update – 21 July 2024 Read More »

SolarWinds Security Updates – 21 July 2024

SolarWinds has released security updates to address several vulnerabilities affecting SolarWinds Access Rights Manager. information, bypass security restrictions, or execute arbitrary code and gain access to the affected system by sending a specially crafted request. Sample of the addressed vulnerabilities: 1. SolarWinds Access Rights Manager Remote Code Execution Vulnerability (CVE-2024-23469): CVSS: 9.6 Attack Vector: Adjacent

SolarWinds Security Updates – 21 July 2024 Read More »

Ivanti Security Updates – 18 July 2024

Ivanti has released security updates to fix several vulnerabilities in Ivanti Endpoint Manager (EPM), (EPMM) for mobile, and Ivanti Docs@Work for Android. The addressed vulnerabilities could allow the attacker to obtain sensitive information, manipulate data, bypass security restrictions, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1.

Ivanti Security Updates – 18 July 2024 Read More »

SonicWall Security Updates – 18 July 2024

SonicWall has released security updates to fix several vulnerabilities affecting multiple SonicWall products. The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. SonicOS IPSec VPN Heap-Based Buffer Overflow Vulnerability (CVE-2024-40764): CVSS: 7.5 Attack

SonicWall Security Updates – 18 July 2024 Read More »

Cisco Security Updates – 18 July 2024

Cisco has released security updates to fix several vulnerabilities across multiple Cisco products. The addressed vulnerabilities could allow the attacker to change the password of the users including administrative users, bypass security restrictions, perform spoofing attacks, cause denial of service attacks, elevate privileges to root, redirect the users to a malicious web page, obtain sensitive

Cisco Security Updates – 18 July 2024 Read More »

Oracle Security Patch Update – 17 July 2024

Oracle released its critical patch updates for July 2024, containing (386) new security patches for multiple affected products in Oracle code and third-party components. The addressed vulnerabilities could allow the attacker to perform various attacks such as obtaining sensitive information, performing denial of service attacks, bypassing security restrictions, data manipulation (view, modify, add, delete), executing

Oracle Security Patch Update – 17 July 2024 Read More »

Google Chrome Security Update – 17 July 2024

Google has released an updated Chrome version “126.0.6478.182/183” for Windows and Mac, and version “126.0.6478.182” for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities:

Google Chrome Security Update – 17 July 2024 Read More »

Splunk Security Updates – 14 July 2024

Splunk has released security updates to fix multiple vulnerabilities affecting Splunk Enterprise and Splunk Cloud Platform. The addressed vulnerabilities could allow the attacker to perform cross-site scripting attacks, obtain sensitive information, bypass security restrictions, conduct denial of service attacks, or execute arbitrary code and gain access to the affected product. Sample of the addressed vulnerabilities:

Splunk Security Updates – 14 July 2024 Read More »

Juniper Security Updates – 14 July 2024

Juniper has released security updates to fix several vulnerabilities across multiple versions of Junos OS and Junos OS Evolved. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, obtain sensitive information, bypass security restrictions, gain elevated privileges, or execute arbitrary commands and gain access to the affected product by sending specially

Juniper Security Updates – 14 July 2024 Read More »

VMware Security Updates – 14 July 2024

VMware has released security updates to address multiple vulnerabilities across several VMware products. The addressed vulnerabilities could enable the attacker to perform cross-site scripting attacks, bypass security controls, conduct denial of service attacks, or gain unauthorized read/write operations in the database by sending specially crafted SQL statements. Sample of the addressed vulnerabilities: 1. VMware Aria

VMware Security Updates – 14 July 2024 Read More »