By michele654 on Monday, 31 July 2023
Category: Vulnerabilities

New Vulnerabilities Monday 31 July


New Alerts for WAGO, IBM, Synology, Microsoft Azure, and Linux.

WAGO 

Multiple WAGO devices are prone to vulnerabilites in the used CODESYS V3 framework. Highest CVSSv3 score of 8.8
No patch yet.
More info.

IBM 

Multiple vulnerabilities were addressed in IBM Cloud Pak for Watson AIOps. Highest CVSSv3 score of 9.8
More info.

Multiple security vulnerabilities are addressed with IBM Business Automation Manager Open Editions. Highest CVSSv3 score of 9.8
More info.

IBM TRIRIGA Application Platform contains multiple vunerabilities. Highest CVSSv3 score of 9.8
More info. And here.

Synology 

Multiple vulnerabilities allow remote attackers to read specific files, obtain sensitive information, and inject arbitrary web script or HTML, and allow man-in-the-middle attackers to bypass security constraint.
More info.

Microsoft 

A researcher at Tenable has discovered an issue that enables limited, unauthorized access to cross-tenant applications and sensitive data (including but not limited to authentication secrets) in Microsoft Asure Service.
Microsoft reports 28 Sept for the fix.
More info.

Linux 

SUSE has updated the kernel and firmware. More info.
Debian has updated the kernel. More info.
Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments