By michele654 on Friday, 02 September 2022
Category: Vulnerabilities

New Vulnerabilities Friday 02 September


New Alerts for Contec Health, Rockwell Automation, Microsoft Edge, and Linux.

Contec Health 

Contec Health CMS8000 CONTEC ICU CCU Vital Signs Patient Monitor contains multiple vulnerabilities, including Improper Access Control, Uncontrolled Resource Consumption, Use of Hard-Coded Credentials, and Active Debug Code. Suuccessful exploitation could allow a remote attacker to cause a DoS, modify firmware with physical access to the device, access a root shell, or employ hard-coded credentials to make configuration changes. Highest CVSSv3 score of 7.5
More info.

Rockwell Automation 

Vulnerabilities discovered in Kepware KEPServerEX affect the Rockwell Automation KEPServer Enterprise. Successful exploitation of these vulnerabilities could allow an attacker to crash the device or remotely execute arbitrary code. CVSSv3 score of 9.8
More info.

Microsoft 

Microsoft has updated Edge with the latest chromium security patches.
More info.

Linux 

SUSE has updated the kernel. More info.
OpenSUSE has updated the kernel. More info.
CentOS has updated systemd. More info.
Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments