By michele654 on Thursday, 26 June 2025
Category: Vulnerabilities

New Vulnerabilities Thursday 26 June


New Alerts for Cisco, Broadcom, Mitsubishi Electric, Ricoh, IBM, and Linux.

Cisco

Cisco has published 2 new bulletins, 1 Critical and 1 Medium. The Critical bulletin lists vulnerabilities in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to issue commands on the underlying operating system as the root user. CVSSv3 score of 10.
More info.

Broadcom

Broadcom has published 3 new bulletins for Tanzu, 1 rated Critical and 2 rated High. Highest CVSSv3 score of 9.8
More info.

Mitsubishi Electric

An authentication bypass vulnerability exists in Mitsubishi Electric air conditioning systems that allows a remote attacker to bypass authentication and control the air conditioning systems or disclose information in them. In addition the attacker may tamper with firmware. CVSSv3 score of 9.8
More info.

Ricoh
Multiple security vulnerabilities exist in Ricoh MFP and Printer Products affecting device firmware and BRAdmin Light. Highest CVSSv3 score of 8.1

More info.

IBM

IBM has published Critical bulletins for Storage Fusion Data Foundation, Cloud Pak for Multicloud Management, Cloud Pak for AIOps, Storage Protect, and Jazz for Service Management.
More info.

Linux 

Oracle Linux has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details