Alerts

Intel Security Updates – 13 November 2024

Intel has released security updates to address several vulnerabilities in multiple Intel products. The addressed vulnerabilities could allow the attacker to perform denial-of-service attacks, gain elevated privileges, or obtain sensitive information and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Intel® Xeon® Processor with Intel® SGX Privilege Escalation (CVE-2024-23918): CVSS: 8.8 […]

Intel Security Updates – 13 November 2024 Read More »

Google Chrome Security Update – 13 November 2024

Google has released an updated Chrome version 131.0.6778.69/.70 for Windows, and Mac and 131.0.6778.69 for Linux The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted HTML page. Sample of the addressed vulnerabilities:

Google Chrome Security Update – 13 November 2024 Read More »

Ivanti Security Updates – 13 November 2024

Ivanti has released security updates to fix several critical vulnerabilities across multiple Ivanti products The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks, escalate elevated privileges, conduct cross-site scripting attacks, data manipulation (view, modify, add, delete), bypass security restrictions, or execute arbitrary code and gain access to the affected systems.

Ivanti Security Updates – 13 November 2024 Read More »

Adobe Security Updates – 13 November 2024

Adobe has released security updates to fix two vulnerabilities affecting Adobe Commerce and Adobe Audition. The addressed vulnerabilities could allow the attacker to obtain sensitive information or bypass security restrictions on the affected systems. The addressed vulnerabilities: 1. Adobe Commerce Server-Side Request Forgery Vulnerability (CVE-2024- 49521): CVSS: 7.7 Attack Vector: Network Attack Complexity: Low Privileges

Adobe Security Updates – 13 November 2024 Read More »

Citrix Security Updates – 13 November 2024

Citrix has released security updates to address several vulnerabilities affecting multiple Citrix products including a zero-day vulnerability. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform denial of service attacks, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Citrix Improper Restriction of Operations

Citrix Security Updates – 13 November 2024 Read More »

Zoom Security Updates – 13 November 2024

Zoom has released security updates to fix several vulnerabilities in multiple Zoom products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform denial of service attacks, or obtain sensitive information and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Zoom Apps Privilege Escalation Vulnerability (CVE-2024-45421): CVSS: 8.5 Attack

Zoom Security Updates – 13 November 2024 Read More »

SAP November 2024 Security Patch Day

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products such as SAP NetWeaver, SAP Web Dispatcher, SAP PDCE, SAP Host Agent, SAP Cash Management, and SAP Bank Account Management. The attacker could exploit some of these vulnerabilities to

SAP November 2024 Security Patch Day Read More »

Veeam Security Update – 10 November 2024

Veeam has released a security update to fix a vulnerability affecting Veeam Backup Enterprise Manager (VBEM). The addressed vulnerability could allow the remote attacker to bypass the authentication while performing a Man-in-the-Middle (MITM) attack. Veeam Backup Enterprise Manager Vulnerability (CVE-2024-40715): CVSS: 7.7 Attack Vector: Network Attack Complexity: High Privileges Required: None User Interaction: None Consequences:

Veeam Security Update – 10 November 2024 Read More »

Cisco Security Updates – 07 November 2024

Cisco has released security updates to fix several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to perform denial of services attacks, bypass security restrictions, conduct cross-site scripting attacks, obtain sensitive information, manipulate data, execute arbitrary codes/SQL commands, and gain access to the affected system. Sample of the addressed vulnerabilities: Cisco

Cisco Security Updates – 07 November 2024 Read More »

Google Chrome Security Update – 06 November 2024

Google has released an updated Chrome version 130.0.6723.116/.117 for Windows, Mac and 130.0.6723.116 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Google Chrome Code Execution Vulnerability (CVE-2024-10826):

Google Chrome Security Update – 06 November 2024 Read More »

Apple Security Updates 03 November 2024

Apple has released security updates to address several vulnerabilities across macOS Ventura, macOS Sequoia, macOS Sonoma, and Safari. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, perform denial of services attacks, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Apple

Apple Security Updates 03 November 2024 Read More »

Google Chrome Security Update – 30 October 2024

Google has released an updated Chrome version 130.0.6723.91/.92 for Windows, Mac and 130.0.6723.91 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Google Chrome Code Execution Vulnerability (CVE-2024-10488):

Google Chrome Security Update – 30 October 2024 Read More »

Mozilla Firefox Security Updates – 30 October 2024

Mozilla has released an updated Firefox version 132, Firefox ESR versions 128.4, and 115.17 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, conduct cross-site scripting attacks, obtain sensitive information, gain elevated privileges, or execute arbitrary code and gain access to the affected system. Sample of the

Mozilla Firefox Security Updates – 30 October 2024 Read More »

Report Summary Cisco Security Updates – 24 October 2024

Cisco has released security updates to fix multiple vulnerabilities affecting several Cisco products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, perform cross-site request forgery attacks, perform cross-site scripting attacks, obtain sensitive information, perform SQL injection attacks, gain elevated privilege, perform denial of services attacks, or execute arbitrary commands and gain access

Report Summary Cisco Security Updates – 24 October 2024 Read More »

Fortinet Security Updates – 24 October 2024

Fortinet has released security updates to fix multiple vulnerabilities across several Fortinet products The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, perform denial of services attacks, or execute arbitrary code and gain access to the affected product. Sample of the addressed vulnerabilities: 1. FG-IR-24-423 Missing Authentication in Fgfmsd Vulnerability

Fortinet Security Updates – 24 October 2024 Read More »

Grafana Security Updates – 23 October 2024

Grafana has released security updates to address multiple vulnerabilities affecting several Grafana versions. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: Grafana SQL Expressions Code Execution Vulnerability (CVE-2024-9264): CVSS: 9.9 Attack Vector: Network

Grafana Security Updates – 23 October 2024 Read More »

Google Chrome Security Update – 23 October 2024

Google has released an updated Chrome version 130.0.6723.69/.70 for Windows, Mac and 130.0.6723.69 for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Google Chrome

Google Chrome Security Update – 23 October 2024 Read More »

Microsoft Edge Security Update – 20 October 2024

Microsoft has released an updated Microsoft Edge version “130.0.2849.46” to address multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, perform spoofing attacks, execute arbitrary code, and gain access to the affected system, by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: 1. Microsoft Edge

Microsoft Edge Security Update – 20 October 2024 Read More »