Skip to main content

CND News and Blog

New Vulnerabilities Monday 08 July


New Alerts for Apache CloudStack, IBM, F5, and NetApp.

Apache 

CloudStack contains 2 vulnerabilities. An unauthenticated cluster service port leads to remote execution, and the integration API service uses dynamic port when disabled.
More info.

IBM 

Apache Derby might allow a remote attacker to bypass security restrictions caused by an LDAP injection vulnerability in the authenticator. CVSSv3 score of 9.1
More info.

F5 

BIG-IP Next SPK aqnd BIG-IP Next CNF contain vulnerabilities in OpenSSL. CVSSv3 score of 3.7
More info.

NetApp 

NetApp has published 7 bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 10.
Only 1 has a patch.
More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/