Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

122 total results found

Palo Alto Releases Critical Security Bulletin for Firewall Devices

EDIT: This remediation is outdated, and organisations are instructed to follow the advice in the High Severity Cyber Alert CC-4578

Year
2024
Severity
Medium
Threat type
Insecure software

Palo Alto Networks Releases Critical Security Advisory for PAN-OS (CVE-2024-0012)

The security advisory addresses a critical authentication bypass vulnerability in the management web interface

Year
2024
Severity
Medium
Threat type
Insecure software

Exploitation of Critical Vulnerabilities in VMware vCenter Server and Cloud Foundation

Exploitation reported for critical vulnerabilities CVE-2024-38812 and CVE-2024-38813

Year
2024
Severity
High
Threat type
Insecure software

Apple Releases Security Updates for Multiple Products

Multiple vulnerabilities affect macOS Sequoia, iOS, iPadOS, Safari, and visionOS

Year
2024
Severity
Medium
Threat type
Insecure software

Palo Alto Networks Releases Security Update for GlobalProtect App (CVE-2024-5921)

Palo Alto Networks releases security update to address a privilege escalation vulnerability in GlobalProtect App 

Year
2024
Severity
Medium
Threat type
Insecure software

QNAP Releases Security Updates for Multiple Products

The most serious vulnerabilities could allow a remote unauthenticated attacker to gain unauthorised access to QNAP products

Year
2024
Severity
Medium
Threat type
Insecure software

SonicWall Releases Security Updates for SMA100 NetExtender for Windows (CVE-2024-29014)

CVE-2024-29014 may allow an attacker to execute arbitrary code when processing an EPC Client update

Year
2024
Severity
Medium
Threat type
Insecure software

Zyxel Releases Advisory for Exploited Vulnerability CVE-2024-11667

A high severity vulnerability could allow an attacker to upload and download files

Year
2024
Severity
Medium
Threat type
Insecure software

Veeam Releases Updates for Service Provider Console and Backup & Replication

The security updates address one critical and ten high severity vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

SonicWall Releases Security Updates for SMA100 SSL-VPN Products

Three buffer overflow vulnerabilities could lead to code execution and three others concern path traversal, authentication bypass, and insecure randomness

Year
2024
Severity
Medium
Threat type
Insecure software

QNAP Fixes Several Vulnerabilities Affecting High-End NAS Devices

QNAP has released a security update addressing several vulnerabilities in their QTS and QuTS NAS operating systems

Year
2024
Severity
Medium
Threat type
Insecure software

Ivanti Releases Security Updates for Multiple Products

Updates address critical vulnerabilities in Cloud Services Application, Connect Secure, and Policy Secure

Year
2024
Severity
Medium
Threat type
Insecure software

Exploitation of critical path traversal vulnerability (CVE-2024-41713) and 0-day path traversal vulnerability (CVE-2024-55550) in Mitel MiCollab

Evidence of chained exploitation of path traversal vulnerabilities affecting Mitel MiCollab following public release of proof-of-concept code  

Year
2024
Severity
High
Threat type
Insecure software

Microsoft Releases December 2024 Security Updates

Scheduled updates for Microsoft products, including security updates for 72 vulnerabilities, with 1 reported as actively exploited

Year
2024
Severity
Medium
Threat type
Insecure software

Cleo Releases Security Advisory for Harmony, VLTrader, and LexiCom

Exploitation in the wild reported for two vulnerabilities potentially leading to RCE

Year
2024
Severity
Medium
Threat type
Insecure software

Proof-of-Concept Released for Critical Apache Struts Vulnerability

CVE-2024-53677 could allow unauthenticated remote code execution, path traversal or upload of malicious files

Year
2024
Severity
Medium
Threat type
Insecure software

BeyondTrust Releases Security Advisory for Remote Support & Privileged Remote Access

A critical vulnerability in BeyondTrust remote access tools could lead to code injection

Year
2024
Severity
Medium
Threat type
Insecure software

Foxit Releases Security Updates Affecting Foxit PDF Reader and Foxit PDF Editor

Security updates address multiple vulnerabilities that could lead to remote code execution, information disclosure, privilege escalation, or DoS

Year
2024
Severity
Medium
Threat type
Insecure software

Fortinet Releases Security Advisory for FortiManager and FortiManager Cloud

CVE-2024-48889 could lead to remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Sophos Releases Critical Advisory for Sophos Firewall

Critical vulnerabilities could lead to SQL injection, unauthorised access, or RCE 

Year
2024
Severity
Medium
Threat type
Insecure software