Advanced Search
Search Results
1030 total results found
Avaya Releases Critical Security Update for IP Office
Two critical vulnerabilities could lead to remote code execution
Progress Software Releases Critical Security Updates for MOVEit Transfer and MOVEit Gateway
Two improper authentication vulnerabilities can lead to authentication bypass
Critical Vulnerability in Fortra FileCatalyst Workflow
The security update addresses a critical SQL injection vulnerability that could allow an attacker to modify data and create administrative users
Juniper Networks Releases Out-of-Cycle Security Bulletin for Session Smart Router (SSR)
Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router
Cisco Releases Advisory for Exploited Vulnerability in NX-OS software
CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild
Apache Releases Multiple Security Updates for HTTP Server
Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution
Citrix Releases Security Critical Updates for NetScaler Console, NetScaler Agent, and NetScaler SVM
Two vulnerabilities could lead to sensitive information disclosure or DoS
Fortinet Releases Security Update for FortiOS and FortiProxy XSS Vulnerability
CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI
Microsoft Releases July 2024 Security Updates
Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities
Exploited Unauthenticated RCE Vulnerability CVE-2023-6548 in Citrix NetScaler ADC and NetScaler Gateway
New intelligence shows that exploitation of this RCE vulnerability does not require authentication
Ivanti Releases Security Update for Vulnerability Affecting Endpoint Manager
A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system
Cisco Releases Security Advisories for Multiple Products
Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities
Ivanti Releases Security Updates for Endpoint Manager for Mobile
Vulnerabilities could allow an attacker to execute arbitrary commands, bypass authentication, and access sensitive resources
SolarWinds Releases Critical Security Updates for Access Rights Manager
Updates address eight critical and five high severity vulnerabilities
Philips Releases Vue PACS Security Advisory
Thirteen vulnerabilities have been found in Philips image-management platform
Docker Releases Security Advisory for Docker Engine
A critical vulnerability could allow an attacker to bypass authorisation plugins
Broadcom Releases Security Updates for VMware ESXi, vCenter Server, and Cloud Foundation Vulnerabilities
Advisory addresses three security vulnerabilities that could result in denial-of-service or authentication bypass
Exploitation of Vulnerability CVE-2023-45249 in Acronis Cyber Infrastructure
Critical vulnerability in Acronis Cyber Infrastructure (ACI) could be exploited to achieve remote code execution
Progress Software Releases Security Update for MOVEit Transfer
An improper authentication vulnerability can lead to privilege escalation
Progress Software Releases Security Advisory for WhatsUp Gold
Advisory addresses 15 security vulnerabilities that could lead to unauthorised access
Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router
Threat ID:CC-4518 Threat Severity:Medium Published:1 July 2024 1:54 PM Summary Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router Affected platforms The following platforms are known to b...
CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild
Threat ID:CC-4519 Threat Severity:Medium Published:2 July 2024 2:11 PM Summary CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild Affected platforms The following platforms are known to b...
Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution
Threat ID:CC-4520 Threat Severity:Medium Published:8 July 2024 3:59 PM Summary Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution Affected platforms The follo...
Two vulnerabilities could lead to sensitive information disclosure or DoS
Threat ID:CC-4521 Threat Severity:Medium Published:10 July 2024 1:43 PM Summary Two vulnerabilities could lead to sensitive information disclosure or DoS Affected platforms The following platforms are known to be affected: NetScaler Ne...
CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI
Threat ID:CC-4522 Threat Severity:Medium Published:10 July 2024 2:33 PM Summary CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI Affected platforms The following platforms are known to be affected: Fortinet FortiOS ...
Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities
Threat ID:CC-4523 Threat Severity:Medium Published:10 July 2024 2:38 PM Summary Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities Affected platforms The following platforms are known to be affected...
New intelligence shows that exploitation of this RCE vulnerability does not require authentication
Threat ID:CC-4525 Threat Severity:High Published:17 July 2024 1:05 PM Summary New intelligence shows that exploitation of this RCE vulnerability does not require authentication Affected platforms The following platforms are known to be affected: N...
A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system
Threat ID:CC-4524 Threat Severity:Medium Published:17 July 2024 2:10 PM Summary A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system Affected platforms The following platforms are known ...
Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities
Threat ID:CC-4526 Threat Severity:Medium Published:18 July 2024 2:13 PM Summary Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities Affected platforms The following platforms are known to be affected: Cisc...
Vulnerabilities could allow an attacker to execute arbitrary commands, bypass authentication, and access sensitive resources
Threat ID:CC-4527 Threat Severity:Medium Published:19 July 2024 1:44 PM Summary Vulnerabilities could allow an attacker to execute arbitrary commands, bypass authentication, and access sensitive resources Affected platforms The following platforms are ...
Updates address eight critical and five high severity vulnerabilities
Threat ID:CC-4528 Threat Severity:Medium Published:19 July 2024 2:41 PM Summary Updates address eight critical and five high severity vulnerabilities Affected platforms The following platforms are known to be affected: Versions: All pr...
Thirteen vulnerabilities have been found in Philips image-management platform
Threat ID:CC-4529 Threat Severity:Low Published:19 July 2024 4:06 PM Summary Thirteen vulnerabilities have been found in Philips image-management platform Affected platforms The following platforms are known to be affected: Versions: a...
A critical vulnerability could allow an attacker to bypass authorisation plugins
Threat ID:CC-4530 Threat Severity:Medium Published:25 July 2024 3:01 PM Summary A critical vulnerability could allow an attacker to bypass authorisation plugins Affected platforms The following platforms are known to be affected: Docker Engine ...
Advisory addresses three security vulnerabilities that could result in denial-of-service or authentication bypass
Threat ID:CC-4531 Threat Severity:Medium Published:29 July 2024 3:04 PM Summary Advisory addresses three security vulnerabilities that could result in denial-of-service or authentication bypass Affected platforms The following platforms are known to be...
Critical vulnerability in Acronis Cyber Infrastructure (ACI) could be exploited to achieve remote code execution
Threat ID:CC-4532 Threat Severity:Medium Published:29 July 2024 4:17 PM Summary Critical vulnerability in Acronis Cyber Infrastructure (ACI) could be exploited to achieve remote code execution Affected platforms The following platforms are known to be ...
An improper authentication vulnerability can lead to privilege escalation
Threat ID:CC-4533 Threat Severity:Medium Published:1 August 2024 2:05 PM Summary An improper authentication vulnerability can lead to privilege escalation Affected platforms The following platforms are known to be affected: Progress (formerly Ipsw...
Advisory addresses 15 security vulnerabilities that could lead to unauthorised access
Threat ID:CC-4534 Threat Severity:Medium Published:7 August 2024 5:10 PM Summary Advisory addresses 15 security vulnerabilities that could lead to unauthorised access Affected platforms The following platforms are known to be affected: ...
Updates address three vulnerabilities that could lead to theft of emails and contacts
Threat ID:CC-4535 Threat Severity:Medium Published:8 August 2024 2:38 PM Summary Updates address three vulnerabilities that could lead to theft of emails and contacts Affected platforms The following platforms are known to be affected: ...
Successful exploitation could lead to full system compromise
Threat ID:CC-4536 Threat Severity:Medium Published:14 August 2024 12:59 PM Summary Successful exploitation could lead to full system compromise Affected platforms The following platforms are known to be affected: Versions: ENTERPRISE 4...
Successful exploitation of the critical vulnerabilities could lead to ACE or privilege escalation
Threat ID:CC-4538 Threat Severity:Medium Published:14 August 2024 1:01 PM Summary Successful exploitation of the critical vulnerabilities could lead to ACE or privilege escalation Affected platforms The following platforms are known to be affected: ...