By michele654 on Thursday, 24 October 2024
Category: Vulnerabilities

New Vulnerabilities Thursday 24 October


New Alerts for Fortinet (patch for the exploit), Cisco, and Siemens.

Fortinet 

A missing authentication for critical function vulnerability in FortiManager fgfmd daemon may allow a remote attacker to execute arbitrary code or commands via specially crafted requests. CVSSv3 score of 9.8
This is the fix for the Exploit reported yesterday.
More info.

Cisco 

Cisco has published 37 new bulletins, 3 rated Critical, 12 rated High, 21 rated Medium, and 1 Informational. Highest CVSSv3 score of 9.9
More info.

Siemens 

Siemens has published an out-of-cycle bulletin identifying multiple vulnerabilities in InterMesh Subscriber devices that could allow a remote attacker to execute arbitrary code with root privileges. Highest CVSSv4 score of 10.
More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details