Monthly Patches are out for Google Pixel. New Alerts for Cisco, Eaton, Dell, HPE, Veeam, and Linux.

Cisco 

Cisco has published 15 new bulletins, 1 rated Critical, 2 rated High, and the rest Medium. Highest CVSSv3 score of 10
More info.

A vulnerability in the web-based management interface of Unified Industrial Wireless Software for Ultra-Reliable Wireless Backhaul (URWB) Access Points could allow a remote attacker to perform command injection attacks with root privileges on the underlying operating system. CVSSv3 score of 10.
More info.

A vulnerability in the EAAS feature of Enterprise Chat and Email (ECE) could allow a remote attacker to cause a DoS. CVSSv3 score of 7.5
More info.

Eaton 

Eaton has been notified about multiple vulnerabilities affecting Eaton's IP intruder system adaptor i-WiFi01, including RCE, hardcoded default credentials, factory reset, DoS, and more. They have decided to EoL this product, and recommend upgrade to a new product.
More info.

Google 

Monthly Updates are out for Pixel, with 3 security vulnerabilities as well as Android updates.
More info.

Dell 

Dell has published Critical bulletins for VxRail and PowerProtect DD.
More info.

HPE 

Security vulnerabilities have been identified in Unified OSS Console Assurance Monitoring (UOCAM) software that could be exploited to perform arbitrary code execution and DoS. Highest CVSSv3 score of 10.
More info.

A security vulnerability, OpenSSH RegreSSHion, was discovered in certain HPE Cray servers. CVSSv3 score of 8.1
More info.

Veeam 

A vulnerability in Backup Enterprise Manager allows attackers to bypass the authentication while performing a MITM attack. CVSSv3 score of 7.7
More info.

Linux 

Ubuntu has updated the kernel. More info.
AlmaLinux has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.