Skip to main content

CND News and Blog

New Vulnerabilities Thursday 30 November


New Alerts for Tenable, Medtronic, Microsoft Edge, and Zyxel.

Tenable 

Nessus Network Monitor has been updated to correct vulnerabilities in third-party software including HandlebarsJS, OpenSSL, and jquery-file-upload. Highest CVSSv3 score of 9.8
More info.

Medtronic 

Mainspring Data Express and Vital Sync Virtual Patient Monitoring Platform use Mirth Connect in certain situations, which allows a remote attacker to execute arbitrary code. CVSSv3 score of 9.8
Manual upgrade instructions for the Mirth Connect component, no Medtronic patches have been released.
More info.

Microsoft Exploit

Edge has been updated with one chromium fix that is being exploited in the wild.
More info.

Zyxel 

Zyxel NAS devices contain several vulnerabilities that allow a remote attacker to execute OS commands or obtain system information.
More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Wednesday, 08 May 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/