By michele654 on Friday, 23 June 2023
Category: Vulnerabilities

New Vulnerabilities Friday 23 June


New Alerts for Crestron, Fortinet, Advantech, and Sierra Wireless.

Crestron 

Crestron x70 series of Touch Panels have inadvertently enabled diagnostic ports in firmware version 2.004.1026. This could potentially allow unauthorized individuals to run uncertified applications on the device.
More info.

Fortinet 

A deserialization of untrusted data vulnerability in FortiNAC may allow a remote attacker to execute unauthorized code or commands via specifically crafted requests to the tcp/1050 service. CVSSv3 score of 9.6
More info.

Advantech 

R-SeeNet contains several vulnerabilities, included hardcoded passwords. CVSSv3 score of 9.8
More info.

Sierra Wireless 

The ALMS / AirVantage platform is vulnerable to a remote attacker registering unregistered devices on the ALMS / AirVantage platform. This could enable an attacker to configure and manage an unsuspecting user's devices.
Register your devices.
More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments