By michele654 on Friday, 07 July 2023
Category: Vulnerabilities

New Vulnerabilities Friday 07 July


New Alerts for PiiGAB, VMware, Atos, IBM, NetApp, and Linux.

PiiGAB 

M-Bus SoftwarePack 900s contains multiple vulnerabilities that allows a remote attacker to inject arbitrary commands, steal passwords, or trick valid users into executing malicious commands. CVSSv3 score of 9.8
More info.

VMware 

VMware SD-WAN contains a bypass authentication vulnerability. A remote attacker can download the Diagnostic bundle of the application under VMware SD-WAN Management. CVSSv3 score of 5.3
More info.

Atos 

Unify OpenScape products contain 2 vulnerabilities, 1 allows a remote attacker to execute PHP scripts, cause a DoS, or modify the configuration. Highest CVSSv3 score of 8.8
More info.

IBM 

Multiple vunerabilities in IBM Java SDK and Golang Go affect IBM Cloud Pak System. Highest CVSSv3 score of 9.8
More info. And here.

IBM QRadar SIEM includes components with known vulnerabilities. Highest CVSSv3 score of 9.8
More info.

IBM Watson Assistant for IBM Cloud Pak for Data is vulnerable to multiple vulerabilities in third-party software. Highest CVSSv3 score of 9.8
More info. And here. And here.

NetApp 

NetApp has published 9 new bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 9.8
Only 1 has patches.
More info.

Linux 

Mageia has updated the systemd. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details