By michele654 on Friday, 08 March 2024
Category: Vulnerabilities

New Vulnerabilities Friday 08 March


New Alerts for Apple (Exploit), Chirp Systems, Microsoft Edge, QNAP, NetApp, and Linux.

Apple Exploit

Apple has published updates for Safari, macOS, tvOS, watchOS, and visionOS. At least one vulnerability in each of these products is being actively exploited.
More info.

Chirp Systems 

Chirp Access contains a Hard-coded Credentials vulnerability, the software improperly stores credentials within its source code, potentially exposing sensitive information to unauthorized access. CVSSv3 score of 9.1
No response from vendor.
More info.

Microsoft 

Microsoft has updated Edge with the latest chromium fixes.
More info.

QNAP 

Multiple vulnerabilities have been reported to affect certain QNAP operating system and applications including an improper authentication vulnerability, allowing a remote attacker to compromise the security of the system via a network. QNAP rates this Critical.
More info.

NetApp 

NetApp has published 13 new bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 9.8
No patches yet.
More info.

Linux 

Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details