By michele654 on Thursday, 30 November 2023
Category: Vulnerabilities

New Vulnerabilities Thursday 30 November


New Alerts for Tenable, Medtronic, Microsoft Edge, and Zyxel.

Tenable 

Nessus Network Monitor has been updated to correct vulnerabilities in third-party software including HandlebarsJS, OpenSSL, and jquery-file-upload. Highest CVSSv3 score of 9.8
More info.

Medtronic 

Mainspring Data Express and Vital Sync Virtual Patient Monitoring Platform use Mirth Connect in certain situations, which allows a remote attacker to execute arbitrary code. CVSSv3 score of 9.8
Manual upgrade instructions for the Mirth Connect component, no Medtronic patches have been released.
More info.

Microsoft Exploit

Edge has been updated with one chromium fix that is being exploited in the wild.
More info.

Zyxel 

Zyxel NAS devices contain several vulnerabilities that allow a remote attacker to execute OS commands or obtain system information.
More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments