Alerts

VMware Security Updates – 30 August 2023

VMware has released security updates to fix multiple vulnerabilities in VMware Aria Operations Networks, and VMware Horizon Server. The addressed vulnerabilities could allow the attacker to gain access, execute arbitrary code, or bypass security restrictions by sending a specially crafted request to VMware Aria Operations Networks affected versions. Sample of the addressed vulnerabilities: 1. VMware […]

VMware Security Updates – 30 August 2023 Read More »

Microsoft Edge Security Update – 27 August 2023

Microsoft has released an updated Microsoft Edge stable version (116.0.1938.62) to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to elevate the privilege or execute arbitrary code on the affected system. Sample of the addressed vulnerabilities: 1. Microsoft Edge Code Execution Vulnerability (CVE-2023-4427): CVSS: 8.8 Attack Vector: Network Attack Complexity: Low Privileges

Microsoft Edge Security Update – 27 August 2023 Read More »

Cisco Security Updates – 24 August 2023

Cisco has released security updates to fix multiple vulnerabilities across multiple products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, read or overwrite files, or perform denial of service attacks on the affected products by sending a specially crafted request. Sample of the addressed vulnerabilities: 1. Cisco Firepower 4100 Series, Firepower 9300

Cisco Security Updates – 24 August 2023 Read More »

Google Chrome Security Update – 23 August 2023

Google has released an updated Chrome version (116.0.5845.110/.111) for Windows, and (116.0.5845.110) for Linux, and Mac to fix several vulnerabilities. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code, and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Google

Google Chrome Security Update – 23 August 2023 Read More »

Aruba Security Updates – 23 August 2023

Aruba has released security updates to fix several vulnerabilities in EdgeConnect SD-WAN Orchestrator. The addressed vulnerabilities could allow the remote attacker to gain access, obtain information, bypass security restrictions, or trigger cross-site scripting (XSS) attacks on the affected product. Sample of the addressed vulnerabilities: 1. HPE Aruba Networking EdgeConnect SD-WAN Orchestrator Cross-Site Scripting (CVE-2023-37423): CVSS:

Aruba Security Updates – 23 August 2023 Read More »

Microsoft Edge Security Update – 20 August 2023

Microsoft has released an updated Microsoft Edge stable version (116.0.1901.200) to fix multiple vulnerabilities in Microsoft Edge (Chromium-based). The addressed vulnerabilities could allow the remote attacker to obtain sensitive information or gain elevated privileges on the affected system. Sample of the addressed vulnerabilities: Microsoft Edge Privilege Escalation Vulnerability (CVE-2023-36787): CVSS: 8.8 Attack Vector: Network Attack

Microsoft Edge Security Update – 20 August 2023 Read More »

Cisco Security Updates – 17 August 2023

Cisco has released security updates to fix multiple vulnerabilities across multiple products. The addressed vulnerabilities could allow the attacker to gain access, obtain information, perform cross site scripting, or gain elevated privileges on the affected products. Sample of the addressed vulnerabilities: 1. Cisco Unified Communications Manager SQL Injection (CVE-2023-20211): CVSS: 8.1 Attack Vector: Network Attack

Cisco Security Updates – 17 August 2023 Read More »

Ivanti Security Update – 16 August 2023

Ivanti released a security update to fix multiple vulnerabilities affecting Ivanti Avalanche versions 6.4.1.207, 6.4.0, and older. The addressed vulnerabilities could allow the remote attacker to gain access, execute arbitrary code, and trigger a buffer overflow attack on the affected product by sending a specially crafted request. Sample of the addressed vulnerabilities: 1. Ivanti Avalanche

Ivanti Security Update – 16 August 2023 Read More »

Google Chrome Security Update – 16 August 2023

Google has released an updated Chrome version (116.0.5845.96/.97) for Windows, and (116.0.5845.96) for Linux, and Mac to fix several vulnerabilities. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code, bypass security restrictions, and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the

Google Chrome Security Update – 16 August 2023 Read More »

Intel Security Updates – 09 August 2023

Intel has released security updates to fix several vulnerabilities in multiple products. The addressed vulnerabilities could allow the remote attacker to perform various attacks such as obtaining sensitive information, bypassing security restrictions, executing arbitrary code, causing a denial of service attack, or escalating the privileges on the affected products. Sample of the addressed vulnerabilities: 1-

Intel Security Updates – 09 August 2023 Read More »

Zoom Security Updates – 09 August 2023

Zoom has released security updates to fix several vulnerabilities in Zoom Rooms,  Zoom Windows Client, and Zoom Client SDK. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, obtain information, and escalate privileges on the affected systems. Sample of the addressed vulnerabilities: 1. Zoom Rooms Improper Neutralization of Special Elements (CVE-2023-39213):

Zoom Security Updates – 09 August 2023 Read More »

Report Summary SAP August 2023 Security Patch Day

SAP has released security updates to address several vulnerabilities affecting multiple products. In addition, SAP also announced (3) updates to the previously released patch day security notes. This month’s patch fixes several vulnerabilities affecting multiple SAP products such as SAP PowerDesigner, SAP ECC and SAP S/4HANA (IS-OIL), SAP Commerce, SAP NetWeaver (BI CONT ADD ON),

Report Summary SAP August 2023 Security Patch Day Read More »