Alerts

Cisco Security Updates – 17 August 2023

Cisco has released security updates to fix multiple vulnerabilities across multiple products. The addressed vulnerabilities could allow the attacker to gain access, obtain information, perform cross site scripting, or gain elevated privileges on the affected products. Sample of the addressed vulnerabilities: 1. Cisco Unified Communications Manager SQL Injection (CVE-2023-20211): CVSS: 8.1 Attack Vector: Network Attack […]

Cisco Security Updates – 17 August 2023 Read More »

Ivanti Security Update – 16 August 2023

Ivanti released a security update to fix multiple vulnerabilities affecting Ivanti Avalanche versions 6.4.1.207, 6.4.0, and older. The addressed vulnerabilities could allow the remote attacker to gain access, execute arbitrary code, and trigger a buffer overflow attack on the affected product by sending a specially crafted request. Sample of the addressed vulnerabilities: 1. Ivanti Avalanche

Ivanti Security Update – 16 August 2023 Read More »

Google Chrome Security Update – 16 August 2023

Google has released an updated Chrome version (116.0.5845.96/.97) for Windows, and (116.0.5845.96) for Linux, and Mac to fix several vulnerabilities. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code, bypass security restrictions, and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the

Google Chrome Security Update – 16 August 2023 Read More »

Intel Security Updates – 09 August 2023

Intel has released security updates to fix several vulnerabilities in multiple products. The addressed vulnerabilities could allow the remote attacker to perform various attacks such as obtaining sensitive information, bypassing security restrictions, executing arbitrary code, causing a denial of service attack, or escalating the privileges on the affected products. Sample of the addressed vulnerabilities: 1-

Intel Security Updates – 09 August 2023 Read More »

Zoom Security Updates – 09 August 2023

Zoom has released security updates to fix several vulnerabilities in Zoom Rooms,  Zoom Windows Client, and Zoom Client SDK. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, obtain information, and escalate privileges on the affected systems. Sample of the addressed vulnerabilities: 1. Zoom Rooms Improper Neutralization of Special Elements (CVE-2023-39213):

Zoom Security Updates – 09 August 2023 Read More »

Report Summary SAP August 2023 Security Patch Day

SAP has released security updates to address several vulnerabilities affecting multiple products. In addition, SAP also announced (3) updates to the previously released patch day security notes. This month’s patch fixes several vulnerabilities affecting multiple SAP products such as SAP PowerDesigner, SAP ECC and SAP S/4HANA (IS-OIL), SAP Commerce, SAP NetWeaver (BI CONT ADD ON),

Report Summary SAP August 2023 Security Patch Day Read More »

Ivanti Security Update – 03 August 2023

Ivanti released a security update to fix a critical vulnerability affecting Ivanti Endpoint Manager Mobile (EPMM) version 11.2 and older, formerly known as MobileIron Core. The addressed vulnerability could allow the remote attacker to gain access to specific API paths without requiring authentication, and disclose information related to personally identifiable information (PII) and this vulnerability

Ivanti Security Update – 03 August 2023 Read More »

Cisco Security Updates – 03 August 2023

Cisco has released security updates to fix multiple vulnerabilities in Cisco Secure Web Appliance and Cisco BroadWorks. The addressed vulnerabilities could allow the remote attacker to bypass security nrestrictions or perform cross-site scripting on the affected products. The addressed vulnerabilities: 1- Cisco AsyncOS Software for Cisco Secure Web Appliance Security Bypass (CVE-2023-20215): CVSS: 5.8 Attack

Cisco Security Updates – 03 August 2023 Read More »

F5 Security Updates – 03 August 2023

F5 has released security updates to fix several vulnerabilities across multiple F5 products such as (BIG-IP, BIG-IP APM, F5OS-A, BIG-IQ Centralized Management). The addressed vulnerabilities could allow the attacker to bypass security restrictions, perform a cross-site scripting attack, obtain sensitive information, or gain elevated privileges by sending a specially crafted request to the affected systems.

F5 Security Updates – 03 August 2023 Read More »

Google Chrome Security Update – 03 August 2023

Google has released an updated Chrome version (115.0.5790.170/.171) for Windows, and (115.0.5790.170) for Linux, and Mac to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code, and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerability: Google

Google Chrome Security Update – 03 August 2023 Read More »

Mozilla FireFox Security Updates – 02 August 2023

Mozilla has released an updated Firefox version 116, and Firefox ESR versions 102.14, 115.1 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to gain access, obtain sensitive information, perform a denial of service attack, bypass security restrictions, gain elevated privileges, or execute arbitrary code on the affected system by persuading the

Mozilla FireFox Security Updates – 02 August 2023 Read More »

VMware Security Updates – 26 July 2023

VMware has released security updates to fix multiple vulnerabilities in VMware SD-Wan and Tanzu Application Service. The addressed vulnerabilities could allow the remote attacker to obtain sensitive information, caused by improper authentication in SD-Wan and logging credentials in hex encoding in platform system audit logs in VMware Tanzu Application. Sample of the addressed vulnerabilities: VMware

VMware Security Updates – 26 July 2023 Read More »

Apple Security Updates – 25 July 2023

Apple has released security updates to address several vulnerabilities across multiple products. The addressed vulnerabilities could allow the attacker to execute arbitrary code, perform denial of service attacks, bypass security restrictions, obtain sensitive information, gain elevated privileges, or gain access to the affected systems by persuading the victim to visit a specially crafted website. Sample

Apple Security Updates – 25 July 2023 Read More »

Ivanti Security Update – 25 July 2023

Ivanti released a security update to fix a critical vulnerability affecting all supported versions of Ivanti Endpoint Manager Mobile (EPMM), formerly known as MobileIron Core. The addressed vulnerability could allow the remote attacker to gain access to specific API paths without requiring authentication. The API paths can access personally identifiable information (PII) such as names,

Ivanti Security Update – 25 July 2023 Read More »