By michele654 on Friday, 08 September 2023
Category: Vulnerabilities

New Vulnerabilities Friday 08 September


New Alerts for Apple (Exploit), Socomec, Dover Fueling, Microsoft Edge, Dell, and HPE.

Apple Exploit

Apple has published updates for iOS, iPadOS, macOS, and watchOS. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Apple is aware that 2 of the vulnerabilities are actively exploited. Highest CVSSv3 score of 9.8
More info. And here. And here.

Socomec 

Multiple vulnerabilities exist in MOD3GP-SY-120K. Highest CVSSv3 score of 10. This product is EoL.
More info.

Dover Fueling 

MAGLINK LX - Web Console Configuration contains vulnerabilities that allow a remote attacker to bypass authentication. Highest CVSSv3 score of 9.1 The product is EoL, but updates are available.
More info.

Microsoft 

Microsoft has updated Edge to include the latest chromium patches.
More info.

Dell 

Dell NetWorker vProxy has been patched for several vulnerabilities in third-party software. Highest rating is Critical.
More info. And here.

HPE 

HPE OneView contains multiple vulnerabilities that allow a remote attacker to bypass authentication, cause DoS, and obtain sensitive information. Highest CVSSv3 score of 9.8
More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details