Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

1030 total results found

Avaya Releases Critical Security Update for IP Office

Two critical vulnerabilities could lead to remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Progress Software Releases Critical Security Updates for MOVEit Transfer and MOVEit Gateway

Two improper authentication vulnerabilities can lead to authentication bypass

Year
2024
Severity
Medium
Threat type
Insecure software

Critical Vulnerability in Fortra FileCatalyst Workflow

The security update addresses a critical SQL injection vulnerability that could allow an attacker to modify data and create administrative users

Year
2024
Severity
Medium
Threat type
Insecure software

Juniper Networks Releases Out-of-Cycle Security Bulletin for Session Smart Router (SSR)

Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router

Year
2024
Severity
Medium
Threat type
Insecure software

Cisco Releases Advisory for Exploited Vulnerability in NX-OS software

CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild

Year
2024
Severity
Medium
Threat type
Insecure software

Apache Releases Multiple Security Updates for HTTP Server

Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Citrix Releases Security Critical Updates for NetScaler Console, NetScaler Agent, and NetScaler SVM

Two vulnerabilities could lead to sensitive information disclosure or DoS 

Year
2024
Severity
Medium
Threat type
Insecure software

Fortinet Releases Security Update for FortiOS and FortiProxy XSS Vulnerability

CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI

Year
2024
Severity
Medium
Threat type
Insecure software

Microsoft Releases July 2024 Security Updates

Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

Exploited Unauthenticated RCE Vulnerability CVE-2023-6548 in Citrix NetScaler ADC and NetScaler Gateway

New intelligence shows that exploitation of this RCE vulnerability does not require authentication

Year
2024
Severity
High
Threat type
Insecure software

Ivanti Releases Security Update for Vulnerability Affecting Endpoint Manager

A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system

Year
2024
Severity
Medium
Threat type
Insecure software

Cisco Releases Security Advisories for Multiple Products

Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

Ivanti Releases Security Updates for Endpoint Manager for Mobile

Vulnerabilities could allow an attacker to execute arbitrary commands, bypass authentication, and access sensitive resources

Year
2024
Severity
Medium
Threat type
Insecure software

SolarWinds Releases Critical Security Updates for Access Rights Manager

Updates address eight critical and five high severity vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

Philips Releases Vue PACS Security Advisory

Thirteen vulnerabilities have been found in Philips image-management platform

Year
2024
Severity
Low
Threat type
Insecure software

Docker Releases Security Advisory for Docker Engine

A critical vulnerability could allow an attacker to bypass authorisation plugins

Year
2024
Severity
Medium
Threat type
Insecure software

Broadcom Releases Security Updates for VMware ESXi, vCenter Server, and Cloud Foundation Vulnerabilities

Advisory addresses three security vulnerabilities that could result in denial-of-service or authentication bypass

Year
2024
Severity
Medium
Threat type
Insecure software

Exploitation of Vulnerability CVE-2023-45249 in Acronis Cyber Infrastructure

Critical vulnerability in Acronis Cyber Infrastructure (ACI) could be exploited to achieve remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Progress Software Releases Security Update for MOVEit Transfer

An improper authentication vulnerability can lead to privilege escalation

Year
2024
Severity
Medium
Threat type
Insecure software

Progress Software Releases Security Advisory for WhatsUp Gold

Advisory addresses 15 security vulnerabilities that could lead to unauthorised access

Year
2024
Severity
Medium
Threat type
Insecure software

Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router

Juniper Networks Releases Out-of-Cycle ...

Threat ID:CC-4518 Threat Severity:Medium Published:1 July 2024 1:54 PM Summary Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router Affected platforms The following platforms are known to b...

CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild

Cisco Releases Advisory for Exploited V...

Threat ID:CC-4519 Threat Severity:Medium Published:2 July 2024 2:11 PM Summary CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild Affected platforms The following platforms are known to b...

Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution

Apache Releases Multiple Security Updat...

Threat ID:CC-4520 Threat Severity:Medium Published:8 July 2024 3:59 PM Summary Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution Affected platforms The follo...

Two vulnerabilities could lead to sensitive information disclosure or DoS

Citrix Releases Security Critical Updat...

Threat ID:CC-4521 Threat Severity:Medium Published:10 July 2024 1:43 PM Summary Two vulnerabilities could lead to sensitive information disclosure or DoS  Affected platforms The following platforms are known to be affected: NetScaler Ne...

CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI

Fortinet Releases Security Update for F...

Threat ID:CC-4522 Threat Severity:Medium Published:10 July 2024 2:33 PM Summary CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI Affected platforms The following platforms are known to be affected: Fortinet FortiOS ...

Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities

Microsoft Releases July 2024 Security U...

Threat ID:CC-4523 Threat Severity:Medium Published:10 July 2024 2:38 PM Summary Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities Affected platforms The following platforms are known to be affected...

New intelligence shows that exploitation of this RCE vulnerability does not require authentication

Exploited Unauthenticated RCE Vulnerabi...

Threat ID:CC-4525 Threat Severity:High Published:17 July 2024 1:05 PM Summary New intelligence shows that exploitation of this RCE vulnerability does not require authentication Affected platforms The following platforms are known to be affected: N...

A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system

Ivanti Releases Security Update for Vul...

Threat ID:CC-4524 Threat Severity:Medium Published:17 July 2024 2:10 PM Summary A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system Affected platforms The following platforms are known ...

Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities

Cisco Releases Security Advisories for ...

Threat ID:CC-4526 Threat Severity:Medium Published:18 July 2024 2:13 PM Summary Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities Affected platforms The following platforms are known to be affected: Cisc...

Vulnerabilities could allow an attacker to execute arbitrary commands, bypass authentication, and access sensitive resources

Ivanti Releases Security Updates for En...

Threat ID:CC-4527 Threat Severity:Medium Published:19 July 2024 1:44 PM Summary Vulnerabilities could allow an attacker to execute arbitrary commands, bypass authentication, and access sensitive resources Affected platforms The following platforms are ...

Updates address eight critical and five high severity vulnerabilities

SolarWinds Releases Critical Security U...

Threat ID:CC-4528 Threat Severity:Medium Published:19 July 2024 2:41 PM Summary Updates address eight critical and five high severity vulnerabilities Affected platforms The following platforms are known to be affected: Versions: All pr...

Thirteen vulnerabilities have been found in Philips image-management platform

Philips Releases Vue PACS Security Advi...

Threat ID:CC-4529 Threat Severity:Low Published:19 July 2024 4:06 PM Summary Thirteen vulnerabilities have been found in Philips image-management platform Affected platforms The following platforms are known to be affected: Versions: a...

A critical vulnerability could allow an attacker to bypass authorisation plugins

Docker Releases Security Advisory for D...

Threat ID:CC-4530 Threat Severity:Medium Published:25 July 2024 3:01 PM Summary A critical vulnerability could allow an attacker to bypass authorisation plugins Affected platforms The following platforms are known to be affected: Docker Engine ...

Advisory addresses three security vulnerabilities that could result in denial-of-service or authentication bypass

Broadcom Releases Security Updates for ...

Threat ID:CC-4531 Threat Severity:Medium Published:29 July 2024 3:04 PM Summary Advisory addresses three security vulnerabilities that could result in denial-of-service or authentication bypass Affected platforms The following platforms are known to be...

Critical vulnerability in Acronis Cyber Infrastructure (ACI) could be exploited to achieve remote code execution

Exploitation of Vulnerability CVE-2023-...

Threat ID:CC-4532 Threat Severity:Medium Published:29 July 2024 4:17 PM Summary Critical vulnerability in Acronis Cyber Infrastructure (ACI) could be exploited to achieve remote code execution Affected platforms The following platforms are known to be ...

An improper authentication vulnerability can lead to privilege escalation

Progress Software Releases Security Upd...

Threat ID:CC-4533 Threat Severity:Medium Published:1 August 2024 2:05 PM Summary An improper authentication vulnerability can lead to privilege escalation Affected platforms The following platforms are known to be affected: Progress (formerly Ipsw...

Advisory addresses 15 security vulnerabilities that could lead to unauthorised access

Progress Software Releases Security Adv...

Threat ID:CC-4534 Threat Severity:Medium Published:7 August 2024 5:10 PM Summary Advisory addresses 15 security vulnerabilities that could lead to unauthorised access Affected platforms The following platforms are known to be affected: ...

Updates address three vulnerabilities that could lead to theft of emails and contacts

Roundcube Releases Security Updates for...

Threat ID:CC-4535 Threat Severity:Medium Published:8 August 2024 2:38 PM Summary Updates address three vulnerabilities that could lead to theft of emails and contacts Affected platforms The following platforms are known to be affected: ...

Successful exploitation could lead to full system compromise

SAP Releases Security Update for Busine...

Threat ID:CC-4536 Threat Severity:Medium Published:14 August 2024 12:59 PM Summary Successful exploitation could lead to full system compromise Affected platforms The following platforms are known to be affected: Versions: ENTERPRISE 4...

Successful exploitation of the critical vulnerabilities could lead to ACE or privilege escalation

Adobe Releases Security Updates for Acr...

Threat ID:CC-4538 Threat Severity:Medium Published:14 August 2024 1:01 PM Summary Successful exploitation of the critical vulnerabilities could lead to ACE or privilege escalation Affected platforms The following platforms are known to be affected: ...