By michele654 on Monday, 28 April 2025
Category: Vulnerabilities

New Vulnerabilities Monday 28 April


New Alerts for SAP (Exploit), Weissemann & Theis, NetApp, IBM, and Linux.

SAP Exploit

SAP has released out-of-band emergency NetWeaver updates to fix a suspected RCE zero-day flaw actively exploited to hijack servers. CVSSv3 score of 10.
More info. And here.

Wiesemann & Theis 

Com-Server firmware supports the insecure TLS 1.0 and TLS 1.1 protocols, which are susceptible to MitM attacks. CVSSv3 score of 9.1
More info.

NetApp 

NetApp has published 10 new bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 10.
No patches yet.
More info.

IBM 

IBM has published Critical bulletins for CICS TX Advanced and QRadar SIEM.
More info.

Linux 

Debian has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details