Skip to main content

CND News and Blog

New Vulnerabilities Thursday 24 July


New Alerts for ABB, HPE, Arista, Tenable, Dell, IBM, and Linux.

ABB

A vulnerability exists in the Modbus TCP server functionality that allows a remote attacker to access fragments of Modbus telegrams that have been sent earlier by that PLC. CVSSv4 score of 6.9
More info.

HPE

Security vulnerabilities have been identified in the HP-UX Secure Shell daemon. These vulnerabilities could be exploited remotely to execute code, bypass security restrictions, execute arbitrary code and compromise system integrity. Highest CVSSv3 score of 6.8
More info.

Arista

On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS. UDP Port 3503 is associated with LspPing Echo Reply. This can result in unexpected behaviors. CVSSv3 score of 7.5
More info.

Tenable

Tenable Identity Exposure has been updated to fix vulnerabilities in third-party software. Highest CVSSv3 score of 7.5
More info.

Dell

Dell has published Critical bulletins for Data Protection Central and Networking SmartFabric Storage Software.
More info.

IBM

IBM has published Critical bulletins for Cloud Pak System Software, Db2 products, Tivoli Monitoring, and QRadar SIEM.
More info.

Linux

AlmaLinux has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/