Skip to main content

CND News and Blog

New Vulnerabilities Thursday 04 April


New Alerts for Cisco, HTTP/2, Ivanti, ABB, HPE, Lexmark, and Linux.

Cisco 

Cisco has published 12 new bulletins, 1 rated High and the rest Medium. Highest CVSSv3 score of 7.5
More info.

A vulnerability in the OOB PnP feature of Cisco Nexus Dashboard Fabric Controller could allow a remote attacker to read arbitrary files. CVSSv3 score of 7.5
More info.

HTTP/2 

Many HTTP/2 implementations do not properly limit or sanitize the amount of CONTINUATION frames sent within a single stream. A remote attacker that can send packets to a target server can send a stream of CONTINUATION frames causing an OOM crash. CVSSv3 score of 7.5
More info.

Node.js has updated. More info.

Ivanti 

Vulnerabilities have been discovered in Ivanti Connect Secure. Highest CVSSv3 score of 8.2
More info.

ABB 

A DoS vulnerability in Control API 'VPNI' impacts S+ Operations, S+ Engineering and S+ Analyst. CVSSv3 score of 7.5
More info.

HPE 

Security vulnerabilities have been identified in HPE Unified OSS Console Assurance Monitoring (UOCAM). These vulnerabilities could allow a remote attacker to achieve Authentication Bypass, DoS, SSRF. Highest CVSSv3 score of 9.8
More info.

Lexmark 

A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. CVSSv3 score of 8.8
More info.

Linux 

Oracle Linux has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Thursday, 09 May 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/