New Alerts for Juniper Networks, Microsoft Edge, Avaya, IBM, and Dell.
Juniper Networks
An Authentication Bypass Using an Alternate Path or Channel vulnerability in Juniper Networks Session Smart Router or Conductor running with a redundant peer allows a network based attacker to bypass authentication and take full control of the device. CVSSv4 score of 10
More info.
Microsoft has updated Edge to fix the latest chromium vulnerabilities.
More info.
Avaya IP Office telephony system contains a vulnerability that could allow remote command execution. Highest CVSSv3 score of 10.
More info.
There are vulnerabilities in Java, WebSphere Application Server Liberty, JupyterHub, R programming language, and Apache MINA used by IBM Cognos Analytics. Highest CVSSv3 score of 9.8
More info. And here.
Dell iDRAC8 and iDRAC9 mitigation is available for predictable IPMI 2.0 session IDs. Dell rates this High. CVSSv3 score of 7.6
More info. And here.