By michele654 on Friday, 10 November 2023
Category: Vulnerabilities

New Vulnerabilities Friday 10 November


New Alerts for SysAid, Weidmüller, Johnson Controls, Microsoft Edge, and Linux.

SysAid 

A Patch Traversal vulnerability has been exploited as a 0-day in SysAid On-Prem Software. CVSSv3 score of 9.8
More info.

Weidmüller 

Weidmüller products use WIBU CodeMeter Runtime. A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service allows an unauthenticated, remote attacker to achieve RCE and gain full access of the host system. CVSSv3 score of 9.8
More info.

Johnson Controls 

Johnson Controls has confirmed a vulnerability in Quantum HD Unity control panels that could allow a remote attacker to access debug features. CVSSv3 score of 10.
More info. And here.

Microsoft 

Microsoft has updated Edge with the latest chromium updates as well as 2 Edge-specific updates.
More info.

Linux 

Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments