Announcements

Cisco Security Updates – 23 January 2025

Cisco has released security updates to fix multiple vulnerabilities affecting several Cisco products. The addressed vulnerabilities could allow the attacker to conduct denial of services attacks, bypass security restrictions, perform cross-site scripting attacks, obtain sensitive information, or gain elevated privileges and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Cisco Meeting […]

Cisco Security Updates – 23 January 2025 Read More »

SonicWall Security Update – 23 January 2025

SonicWall has released a security update to fix a critical vulnerability in SonicWall SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC) version 12.4.3-02804 and earlier versions. The addressed vulnerability could allow the remote unauthenticated attacker to execute arbitrary OS commands and gain unauthorized access to the affected systems. SonicWALL SMA1000 Pre-Authentication Remote Command

SonicWall Security Update – 23 January 2025 Read More »

Oracle Security Patch Update – 22 January 2025

Oracle released its critical patch updates for January 2025, containing (318) new security patches for multiple affected products in Oracle code and third-party components. The addressed vulnerabilities could allow the attacker to perform various attacks such as obtaining sensitive information, gaining elevated privileges, conducting denial of service attacks, performing data manipulation (update, insert, or delete

Oracle Security Patch Update – 22 January 2025 Read More »

Ivanti Security Updates – 15 January 2025

Ivanti has released security updates to fix several vulnerabilities across multiple Ivanti products. The addressed vulnerabilities could allow the attacker to escalate elevated privileges, perform denial of service attacks, bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Ivanti EPM Path

Ivanti Security Updates – 15 January 2025 Read More »

Fortinet Security Updates – 15 January 2025

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, perform denial of services attacks, manipulate files, conduct SQL injection attacks, bypass security restrictions, perform cross-site scripting attacks, or execute arbitrary code and gain access to the affected

Fortinet Security Updates – 15 January 2025 Read More »

Microsoft January 2025 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed eight zero-day vulnerabilities with three actively exploited in attacks. Microsoft has fixed (161) vulnerabilities, with (3) classified as critical as they could allow the attacker to conduct spoofing attacks, perform denial of service attacks, gain elevated privileges, obtain

Microsoft January 2025 Patch Tuesday Read More »

SAP January 2025 Security Patch Day

SAP has released security updates to address several vulnerabilities affecting multiple products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products such SAP NetWeaver ABAP and ABAP Platform, SAP NetWeaver AS for ABAP and ABAP Platform, SAP BusinessObjects Business Intelligence Platform, SAPSetup, SAP Business Workflow, SAP Flexible Workflow, SAP NetWeaver Application

SAP January 2025 Security Patch Day Read More »

Ivanti Security Updates – 09 January 2025

Ivanti has released security updates to fix two vulnerabilities across multiple versions of Ivanti Connect Secure, Policy Secure, and ZTA Gateways. The addressed vulnerabilities could allow the attacker to gain elevated privileges or execute arbitrary code and gain access to the affected system. The addressed vulnerabilities: 1. Ivanti Connect Secure Remote Code Execution (CVE-2025-0282): CVSS:

Ivanti Security Updates – 09 January 2025 Read More »

Sophos Security Update – 22 December 2024

Sophos has released security updates to fix multiple vulnerabilities in Sophos firewall versions 21.0 GA (21.0.0) and older. The severity of the addressed vulnerability could allow the remote attacker to execute remote code and gain access to the affected versions. 1. Sophos firewall pre-auth SQL injection vulnerability (CVE-2024-12727): CVSS: 9.8 Attack Vector: Network Attack Complexity:

Sophos Security Update – 22 December 2024 Read More »

Apache Tomcat Security Updates – 19 December 2024

Apache has released security updates to address two vulnerabilities affecting multiple versions of Apache Tomcat. The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks or execute arbitrary code, and gain access to the affected systems. The addressed vulnerabilities: 1. Apache Tomcat Code Execution Vulnerability (CVE-2024-50379): CVSS: 9.8 Attack Vector: Network

Apache Tomcat Security Updates – 19 December 2024 Read More »

Fortinet Security Updates – 19 December 2024

Fortinet has released security updates to fix multiple vulnerabilities across several Fortinet products. The addressed vulnerabilities could allow the attacker to obtain sensitive information or execute arbitrary command/code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. FortiWLM Remote Command/Code Execution Vulnerability (CVE-2023- 34990): CVSS: 9.6 Attack Vector: Network Attack Complexity:

Fortinet Security Updates – 19 December 2024 Read More »

Apple Security Updates – 15 December 2024

 Apple has released security updates to address multiple vulnerabilities across macOS Ventura, macOS Sequoia, macOS Sonoma, and Safari. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, perform denial of services attacks, elevate privileges, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities:

Apple Security Updates – 15 December 2024 Read More »

Microsoft December 2024 Patch Tuesday

 Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed one zero-day vulnerability. Microsoft has fixed (72) vulnerabilities, with (1) classified as critical as they could allow the attacker to conduct spoofing attacks, gain elevated privileges, perform denial of service attacks, obtain sensitive information, or execute arbitrary code

Microsoft December 2024 Patch Tuesday Read More »

Ivanti Security Updates – 11 December 2024

Ivanti has released security updates to fix several vulnerabilities across multiple Ivanti products. The addressed vulnerabilities could allow the attacker to manipulate data, bypass security restrictions, perform denial of service attacks, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Ivanti CSA Administrative Access Vulnerability (CVE-2024-11639): CVSS:

Ivanti Security Updates – 11 December 2024 Read More »

SAP December 2024 Security Patch Day

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products such as SAP NetWeaver AS for JAVA, SAP Web Dispatcher, SAP BusinessObjects Business Intelligence Platform, SAP NetWeaver Application Server (ABAP), SAP HCM, SAP Product Lifecycle Costing, SAP NetWeaver Administrator

SAP December 2024 Security Patch Day Read More »

Veeam Security Updates – 05 December 2024

 Veeam has released security updates to fix several vulnerabilities affecting multiple Veeam products. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, gain elevated privileges, conduct DLL injection attacks, obtain sensitive information, manipulate data or execute arbitrary code, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1.

Veeam Security Updates – 05 December 2024 Read More »

Palo Alto Security Updates – 19 November 2024

Palo Alto has released security updatesto fix multiple vulnerabilities affecting Palo Alto PAN-OS. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform denial of service attacks, conduct SSRF attacks, obtain sensitive information, bypass security restrictions or gain access to the affected system. Sample of the addressed vulnerabilities: 1. PAN-OS Authentication Bypass in

Palo Alto Security Updates – 19 November 2024 Read More »

Cisco Security Updates – 07 November 2024

Cisco has released security updates to fix several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to perform denial of services attacks, bypass security restrictions, conduct cross-site scripting attacks, obtain sensitive information, manipulate data, execute arbitrary codes/SQL commands, and gain access to the affected system. Sample of the addressed vulnerabilities: Cisco

Cisco Security Updates – 07 November 2024 Read More »