Alerts

Microsoft Edge Security Update – 07 April 2024

Microsoft has released an updated Microsoft Edge version 123.0.2420.81 and Extended Stable Channel (Version 122.0.2365.120) to address multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, conduct spoofing attacks, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. […]

Microsoft Edge Security Update – 07 April 2024 Read More »

Cisco Security Updates – 04 April 2024

Cisco has released security updates to fix several vulnerabilities across multiple Cisco products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform cross-site scripting attacks, obtain sensitive information, bypass security restrictions, or execute arbitrary code, and gain access to the affected products. Sample of the addressed vulnerabilities: 1. Cisco Nexus Dashboard and

Cisco Security Updates – 04 April 2024 Read More »

Google Chrome Security Update – 03 April 2024

Google has released an updated Chrome version 123.0.6312.105/.106/.107 for Windows and Mac and version 123.0.6312.105 for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities:

Google Chrome Security Update – 03 April 2024 Read More »

VMware Security Updates – 03 April 2024

VMware has released security updates to address several vulnerabilities in VMware SD-WAN Orchestrator and VMware SD-WAN Edge. The addressed vulnerabilities could allow the attacker to bypass security restrictions, conduct phishing attacks, obtain sensitive information, or execute arbitrary code on the affected products by sending a specially crafted request. Sample of the addressed vulnerabilities: 1. VMware

VMware Security Updates – 03 April 2024 Read More »

Linux XZ Utils Security Update – 31 March 2024

RedHat has warned users to immediately stop using systems running Fedora development and experimental versions because of a vulnerability found in the latest Linux XZ Utils versions 5.6.0 and 5.6.1. The severity of the addressed vulnerability could allow the remote attacker to gain unauthorized access to the entire affected system remotely, caused by malicious embedded

Linux XZ Utils Security Update – 31 March 2024 Read More »

Cisco Security Updates – 28 March 2024

Cisco has released security updates to fix several vulnerabilities across multiple Cisco products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform denial of service attacks, bypass security restrictions, execute arbitrary code, and gain access to the affected products. Sample of the addressed vulnerabilities: 1. Cisco IOS XE Software Denial of Service

Cisco Security Updates – 28 March 2024 Read More »

Microsoft Edge Security Update – 28 March 2024

Microsoft has released an updated Microsoft Edge version 123.0.2420.65 and Extended Stable Channel (Version 122.0.2365.113) to address multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Microsoft Edge

Microsoft Edge Security Update – 28 March 2024 Read More »

Microsoft Edge Security Update – 24 March 2024

Microsoft has released an updated Microsoft Edge version 123.0.2420.53 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to obtain sensitive information, conduct spoofing attacks, bypass security restrictions, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the

Microsoft Edge Security Update – 24 March 2024 Read More »

Mozilla FireFox Security Updates – 23 March 2024

Mozilla has released an updated Firefox version 124.0.1, and Firefox ESR version 115.9.1 to fix two zero-day vulnerabilities. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code, and gain access to the affected products by fooling range-based bounds check elimination or injecting an event handler into a privileged object. The addressed vulnerabilities:

Mozilla FireFox Security Updates – 23 March 2024 Read More »

Atlassian Security Updates – 22 March 2024

Atlassian has released security updates to address several vulnerabilities across multiple products and third-party components included in Atlassian products. The addressed vulnerabilities could allow the attacker to manipulate data, view, add, modify, or delete information in the back-end database, obtain sensitive information, perform denial of service attacks, or execute arbitrary code and gain access to

Atlassian Security Updates – 22 March 2024 Read More »

Ivanti Security Updates – 21 March 2024

Ivanti has released security updates to fix two critical vulnerabilities across Ivanti Neurons for ITSM and Ivanti Standalone Sentry. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code, and gain access to the affected systems. The addressed vulnerabilities: 1. Ivanti Neurons for ITSM Code Execution Vulnerability (CVE-2023-46808): CVSS: 9.9 Attack Vector: Network

Ivanti Security Updates – 21 March 2024 Read More »

Google Chrome Security Update – 20 March 2024

Google has released an updated Chrome version 123.0.6312.58/.59 for Windows and Mac and version 123.0.6312.58 for Linux. The addressed vulnerabilities could allow the remote attacker to obtain sensitive information, bypass security restrictions, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of

Google Chrome Security Update – 20 March 2024 Read More »

Fortra Security Updates – 19 March 2024

Fortra has released security updates to address several vulnerabilities in multiple Fortra products. The addressed vulnerabilities could allow the remote attacker to conduct crosssite scripting attacks, perform directory traversal within the ‘ftpservlet’ of the FileCatalyst Workflow Web Portal allow files to be uploaded outside of the intended ‘uploadtemp’ directory by sending specially crafted POST requests,

Fortra Security Updates – 19 March 2024 Read More »

Microsoft Edge Security Update – 17 March 2024

Microsoft has released an updated Microsoft Edge version 122.0.2365.92 to address multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, conduct spoofing attacks, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Microsoft

Microsoft Edge Security Update – 17 March 2024 Read More »

Cisco Security Updates – 14 March 2024

Cisco has released security updates to fix several vulnerabilities in multiple Cisco products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, execute denial of service attacks, bypass security restrictions, execute arbitrary code, and gain access to the affected products. Sample of the addressed vulnerabilities: 1. Cisco IOS XR Software Privilege Escalation Vulnerability

Cisco Security Updates – 14 March 2024 Read More »

Apache Tomcat Security Updates – 14 March 2024

Apache has released security updates to address two vulnerabilities affecting multiple versions of Apache Tomcat. The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks by sending specially crafted WebSocket connections or HTTP/2 requests. Sample of the addressed vulnerabilities: Apache Tomcat Denial of Service Vulnerability (CVE-2024-23672): CVSS: 7.5 Attack Vector: Network

Apache Tomcat Security Updates – 14 March 2024 Read More »