By michele654 on Thursday, 30 May 2024
Category: Vulnerabilities

New Vulnerabilities Thursday 30 May


New Alerts for Checkpoint (Exploit), Baxter, Carrier, Dell, F5, and Linux.

Checkpoint Exploit

Checkpoint Quantum Security Gateway has an actively exploited vulnerability in Security Gateways with IPsec VPN in Remote Access VPN community and the Mobile Access software blade. CVSSv3 score of 8.6
More info. And here.

Baxter 

Welch Allyn Connex Spot Monitor contains a Use of Default Cryptographic Key vulnerability. This vulnerability could allow a remote attacker to modify device configuration and firmware data. Tampering with this data could lead to device compromise, resulting in impact and/or delay in patient care. CVSSv4 score of 9.1
More info.

Carrier 

Carrier is aware of vulnerabilities impacting Lenel2 NetBox. Successful exploitation of these vulnerabilities could allow an attacker to bypass authentication and execute malicious commands with elevated permissions. Highest CVSSv4 score of 9.3
More info.

Dell 

Dell PowerStore Family remediation is available for multiple security vulnerabilities that may be exploited to compromise the affected system. Dell rates this Critical.
More info.

F5 

F5 has published out-of-band security updates for NGINX HTTP/3 QUIC. Highest CVSSv3 score of 6.5
More info.

Linux 

SUSE has updated the kernel. More info.
Red Hat has updated the kernel and kernel-rt. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details