Skip to main content

CND News and Blog

New Vulnerabilities Thursday 15 May


Monthly Patches are out for Palo Alto Networks. New Alerts for Pgpool-II, Google Chrome (Exploit), Hitachi, Progress, Sonicwall, and Linux.

Palo Alto Networks 

Palo Alto Monthly Patches includes 11 bulletins. Highest CVSSv4 score of 8.2
More info.

Pgpool-II 

An authentication bypass vulnerability exists in the client authentication mechanism of Pgpool-II. CVSSv4 score of 9.3
More info.

Google Exploit

Google has updated Chrome for Desktop to fix 4 security vulnerabilities. Exploits have been seen.
More info.

Microsoft is aware. More info.

Hitachi 

Hitachi has published 7 new bulletins for JP1/IT Desktop Management, Infrastructure Analytics Advisor, Ops Center Analyzer, Ops Center Common Services, Ops Center Viewpoint, and Cosminexus
More info.

Progress 

In Progress Telerik UI for AJAX, a remote attacker can send a specially crafted request that results in a DoS. This affects Sitefinity as well.
More info. And here.

Sonicwall 

A SSRF vulnerability has been identified in the SMA1000 Appliance Work Place interface, allowing a remote attacker to cause the appliance to make requests to unintended location. CVSSv3 score of 7.2
More info. And here.

Linux 

Red Hat has updated the kernel and kernel-rt. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/