By michele654 on Thursday, 15 December 2022
Category: Vulnerabilities

New Vulnerabilities Thursday 15 December


New Alerts for Weidmueller, Rockwell Automation, IBM, Google (ChromeOS LTS), and Linux.

Weidmueller 

Multiple IoT and control products are affected by a JavaScript injection vulnerability in the XML editing system SCHEMA ST4 online help by Quanos Solutions GmbH. CVSSv3 score of 6.1
More info. And here.

Rockwell Automation 

Rockwell Automation is aware of a DoS vulnerability that impacts GuardLogix and ControlLogix controllers. Exploitation of this vulnerability could lead to degradation in availability of the controller and/or a possible major non-recoverable fault (MNRF). CVSSv3 score of 8.6
More info.

IBM 

Vulnerabilities in xmldom module may compromise the authentication mechanism of the Spectrum Control Product. CVSSv3 score of 9.4
More info.

Netcool Operations Insight v1.6.7 contains fixes for multiple security vulnerabilities. Highest CVSSv3 score of 9.8
More info.

Multiple vulnerabilities were fixed in IBM Cloud Pak for Watson AIOps. Highest CVSSv3 score of 9.8
More info.

Google 

Google has updated LTS ChromeOS to fix several security vulnerabilities.
More info.

Linux 

Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments