Skip to main content

CND News and Blog

New Vulnerabilities Thursday 06 June


New Alerts for Cisco, NetApp, Bitdefender, and Linux.


Cisco 

Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow a remote attacker to perform a stored XSS attack by exploiting a RFI vulnerability or perform a SSRF attack. Highest CVSSv3 score of 7.2
More info.

NetApp 

NetApp has published 10 new bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 9.8
No patches yet.
More info.

Bitdefender 

GravityZone Console contains a host whitelist parser issue in the proxy service implemented in the GravityZone Update Server that allows a remote attacker to cause a server-side request forgery. CVSSv3 score of 8.1
Automatic updates have been published.
More info.

Linux 

Oracle Linux has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/