Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

1030 total results found

Critical Security Advisory for Icinga 2 (CVE-2024-49369)

Applying security updates is urged as full report with technical details of the vulnerability are expected

Year
2024
Severity
Medium
Threat type
Insecure software

Palo Alto Releases Critical Security Bulletin for Firewall Devices

EDIT: This remediation is outdated, and organisations are instructed to follow the advice in the High Severity Cyber Alert CC-4578

Year
2024
Severity
Medium
Threat type
Insecure software

Palo Alto Networks Releases Critical Security Advisory for PAN-OS (CVE-2024-0012)

The security advisory addresses a critical authentication bypass vulnerability in the management web interface

Year
2024
Severity
Medium
Threat type
Insecure software

Exploitation of Critical Vulnerabilities in VMware vCenter Server and Cloud Foundation

Exploitation reported for critical vulnerabilities CVE-2024-38812 and CVE-2024-38813

Year
2024
Severity
High
Threat type
Insecure software

Apple Releases Security Updates for Multiple Products

Multiple vulnerabilities affect macOS Sequoia, iOS, iPadOS, Safari, and visionOS

Year
2024
Severity
Medium
Threat type
Insecure software

Palo Alto Networks Releases Security Update for GlobalProtect App (CVE-2024-5921)

Palo Alto Networks releases security update to address a privilege escalation vulnerability in GlobalProtect App 

Year
2024
Severity
Medium
Threat type
Insecure software

QNAP Releases Security Updates for Multiple Products

The most serious vulnerabilities could allow a remote unauthenticated attacker to gain unauthorised access to QNAP products

Year
2024
Severity
Medium
Threat type
Insecure software

SonicWall Releases Security Updates for SMA100 NetExtender for Windows (CVE-2024-29014)

CVE-2024-29014 may allow an attacker to execute arbitrary code when processing an EPC Client update

Year
2024
Severity
Medium
Threat type
Insecure software

Zyxel Releases Advisory for Exploited Vulnerability CVE-2024-11667

A high severity vulnerability could allow an attacker to upload and download files

Year
2024
Severity
Medium
Threat type
Insecure software

Veeam Releases Updates for Service Provider Console and Backup & Replication

The security updates address one critical and ten high severity vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

SonicWall Releases Security Updates for SMA100 SSL-VPN Products

Three buffer overflow vulnerabilities could lead to code execution and three others concern path traversal, authentication bypass, and insecure randomness

Year
2024
Severity
Medium
Threat type
Insecure software

QNAP Fixes Several Vulnerabilities Affecting High-End NAS Devices

QNAP has released a security update addressing several vulnerabilities in their QTS and QuTS NAS operating systems

Year
2024
Severity
Medium
Threat type
Insecure software

Ivanti Releases Security Updates for Multiple Products

Updates address critical vulnerabilities in Cloud Services Application, Connect Secure, and Policy Secure

Year
2024
Severity
Medium
Threat type
Insecure software

Exploitation of critical path traversal vulnerability (CVE-2024-41713) and 0-day path traversal vulnerability (CVE-2024-55550) in Mitel MiCollab

Evidence of chained exploitation of path traversal vulnerabilities affecting Mitel MiCollab following public release of proof-of-concept code  

Year
2024
Severity
High
Threat type
Insecure software

Microsoft Releases December 2024 Security Updates

Scheduled updates for Microsoft products, including security updates for 72 vulnerabilities, with 1 reported as actively exploited

Year
2024
Severity
Medium
Threat type
Insecure software

Cleo Releases Security Advisory for Harmony, VLTrader, and LexiCom

Exploitation in the wild reported for two vulnerabilities potentially leading to RCE

Year
2024
Severity
Medium
Threat type
Insecure software

Proof-of-Concept Released for Critical Apache Struts Vulnerability

CVE-2024-53677 could allow unauthenticated remote code execution, path traversal or upload of malicious files

Year
2024
Severity
Medium
Threat type
Insecure software

BeyondTrust Releases Security Advisory for Remote Support & Privileged Remote Access

A critical vulnerability in BeyondTrust remote access tools could lead to code injection

Year
2024
Severity
Medium
Threat type
Insecure software

Foxit Releases Security Updates Affecting Foxit PDF Reader and Foxit PDF Editor

Security updates address multiple vulnerabilities that could lead to remote code execution, information disclosure, privilege escalation, or DoS

Year
2024
Severity
Medium
Threat type
Insecure software

Fortinet Releases Security Advisory for FortiManager and FortiManager Cloud

CVE-2024-48889 could lead to remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Exploitation reported for critical vulnerabilities CVE-2024-38812 and CVE-2024-38813

Exploitation of Critical Vulnerabilitie...

Threat ID:CC-4565 Threat Severity:High Published:19 November 2024 2:35 PM Summary Exploitation reported for critical vulnerabilities CVE-2024-38812 and CVE-2024-38813 Affected platforms The following platforms are known to be affected: ...

Multiple vulnerabilities affect macOS Sequoia, iOS, iPadOS, Safari, and visionOS

Apple Releases Security Updates for Mul...

Threat ID:CC-4579 Threat Severity:Medium Published:20 November 2024 4:15 PM Summary Multiple vulnerabilities affect macOS Sequoia, iOS, iPadOS, Safari, and visionOS Affected platforms The following platforms are known to be affected: V...

Palo Alto Networks releases security update to address a privilege escalation vulnerability in GlobalProtect App

Palo Alto Networks Releases Security Up...

Threat ID:CC-4580 Threat Severity:Medium Published:26 November 2024 1:06 PM Summary Palo Alto Networks releases security update to address a privilege escalation vulnerability in GlobalProtect App  Affected platforms The following platforms are known t...

The most serious vulnerabilities could allow a remote unauthenticated attacker to gain unauthorised access to QNAP products

QNAP Releases Security Updates for Mult...

Threat ID:CC-4581 Threat Severity:Medium Published:27 November 2024 1:05 PM Summary The most serious vulnerabilities could allow a remote unauthenticated attacker to gain unauthorised access to QNAP products Affected platforms The following platforms a...

CVE-2024-29014 may allow an attacker to execute arbitrary code when processing an EPC Client update

SonicWall Releases Security Updates for...

Threat ID:CC-4582 Threat Severity:Medium Published:27 November 2024 1:11 PM Summary CVE-2024-29014 may allow an attacker to execute arbitrary code when processing an EPC Client update Affected platforms The following platforms are known to be affected:...

A high severity vulnerability could allow an attacker to upload and download files

Zyxel Releases Advisory for Exploited V...

Threat ID:CC-4583 Threat Severity:Medium Published:2 December 2024 4:14 PM Summary A high severity vulnerability could allow an attacker to upload and download files Affected platforms The following platforms are known to be affected: Zyxel ATP ...

The security updates address one critical and ten high severity vulnerabilities

Veeam Releases Updates for Service Prov...

Threat ID:CC-4584 Threat Severity:Medium Published:4 December 2024 3:30 PM Summary The security updates address one critical and ten high severity vulnerabilities Affected platforms The following platforms are known to be affected: Ver...

Three buffer overflow vulnerabilities could lead to code execution and three others concern path traversal, authentication bypass, and insecure randomness

SonicWall Releases Security Updates for...

Threat ID:CC-4585 Threat Severity:Medium Published:5 December 2024 3:41 PM Summary Three buffer overflow vulnerabilities could lead to code execution and three others concern path traversal, authentication bypass, and insecure randomness Affected platfo...

QNAP has released a security update addressing several vulnerabilities in their QTS and QuTS NAS operating systems

QNAP Fixes Several Vulnerabilities Affe...

Threat ID:CC-4586 Threat Severity:Medium Published:10 December 2024 2:05 PM Summary QNAP has released a security update addressing several vulnerabilities in their QTS and QuTS NAS operating systems Affected platforms The following platforms are known ...

Updates address critical vulnerabilities in Cloud Services Application, Connect Secure, and Policy Secure

Ivanti Releases Security Updates for Mu...

Threat ID:CC-4587 Threat Severity:Medium Published:11 December 2024 2:59 PM Summary Updates address critical vulnerabilities in Cloud Services Application, Connect Secure, and Policy Secure Affected platforms The following platforms are known to be aff...

Evidence of chained exploitation of path traversal vulnerabilities affecting Mitel MiCollab following public release of proof-of-concept code

Exploitation of critical path traversal...

Threat ID:CC-4588 Threat Severity:High Published:11 December 2024 4:09 PM Summary Evidence of chained exploitation of path traversal vulnerabilities affecting Mitel MiCollab following public release of proof-of-concept code   Affected platforms The fol...

Scheduled updates for Microsoft products, including security updates for 72 vulnerabilities, with 1 reported as actively exploited

Microsoft Releases December 2024 Securi...

Threat ID:CC-4589 Threat Severity:Medium Published:11 December 2024 4:45 PM Summary Scheduled updates for Microsoft products, including security updates for 72 vulnerabilities, with 1 reported as actively exploited Affected platforms The following plat...

Exploitation in the wild reported for two vulnerabilities potentially leading to RCE

Cleo Releases Security Advisory for Har...

Threat ID:CC-4590 Threat Severity:Medium Published:11 December 2024 4:57 PM Summary Exploitation in the wild reported for two vulnerabilities potentially leading to RCE Affected platforms The following platforms are known to be affected: ...

CVE-2024-53677 could allow unauthenticated remote code execution, path traversal or upload of malicious files

Proof-of-Concept Released for Critical ...

Threat ID:CC-4592 Threat Severity:Medium Published:17 December 2024 2:31 PM Summary CVE-2024-53677 could allow unauthenticated remote code execution, path traversal or upload of malicious files Affected platforms The following platforms are known to be...

A critical vulnerability in BeyondTrust remote access tools could lead to code injection

BeyondTrust Releases Security Advisory ...

Threat ID:CC-4591 Threat Severity:Medium Published:17 December 2024 3:16 PM Summary A critical vulnerability in BeyondTrust remote access tools could lead to code injection Affected platforms The following platforms are known to be affected: ...

Security updates address multiple vulnerabilities that could lead to remote code execution, information disclosure, privilege escalation, or DoS

Foxit Releases Security Updates Affecti...

Threat ID:CC-4593 Threat Severity:Medium Published:19 December 2024 1:14 PM Summary Security updates address multiple vulnerabilities that could lead to remote code execution, information disclosure, privilege escalation, or DoS Affected platforms The ...

CVE-2024-48889 could lead to remote code execution

Fortinet Releases Security Advisory for...

Threat ID:CC-4594 Threat Severity:Medium Published:19 December 2024 2:38 PM Summary CVE-2024-48889 could lead to remote code execution Affected platforms The following platforms are known to be affected: Fortinet FortiManager 6.4.10 to ...

Critical vulnerabilities could lead to SQL injection, unauthorised access, or RCE

Sophos Releases Critical Advisory for S...

Threat ID:CC-4595 Threat Severity:Medium Published:23 December 2024 2:22 PM Summary Critical vulnerabilities could lead to SQL injection, unauthorised access, or RCE  Affected platforms The following platforms are known to be affected: ...

Security updates addressing CVE-2024-56337 fully mitigate CVE-2024-50379

Apache Releases Multiple Security Updat...

Threat ID:CC-4596 Threat Severity:Medium Published:24 December 2024 11:35 AM Summary Security updates addressing CVE-2024-56337 fully mitigate CVE-2024-50379 Affected platforms CVE Vulnerabilities Summary Security updates addressing CVE-2...

Exploitation of CVE-2024-3393 has been reported and could lead to a denial-of-service condition on PAN-OS firewalls

Palo Alto Networks Releases Security Up...

Threat ID:CC-4597 Threat Severity:Medium Published:27 December 2024 11:36 AM Summary Exploitation of CVE-2024-3393 has been reported and could lead to a denial-of-service condition on PAN-OS firewalls Affected platforms The following platforms are know...