By michele654 on Monday, 22 July 2024
Category: Vulnerabilities

New Vulnerabilities Monday 22 July


New Alerts for Meinberg, Tenda, NetApp, IBM, and Subnet Solutions.

Meinberg 

The LANTIME firmware update includes security updates of various third party libraries and programs.
More info.

Tenda 

Tenda AX2pro could allow a remote attacker to execute arbitrary code on the system, caused by a flaw in Routing functionality. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
More info.

NetApp 

NetApp has published 8 new bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 9.8
No patches yet.
More info.

IBM 

IBM Storage Ceph is vulnerable to assorted vulnerabilities in Grafana. Highest CVSSv3 score of 9.8
More info.

Subnet Solutions 

PowerSYSTEM Center contains a Prototype Pollution vulnerability. CVSSv4 score of 6.9
Although the CVSS score shows no privilege required, the description references an authenticated attacker.
More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details