By michele654 on Tuesday, 29 April 2025
Category: Vulnerabilities

New Vulnerabilities Tuesday 29 April


New Alerts for Apache Tomcat, SICK, PowerDNS, Ribbon Communications, and IBM.

Apache 

Tomcat contains an incorrect error handling vulnerability for some invalid HTTP priority headers could result in a DoS.
More info.

SICK 

SICK has identified a DoS vulnerability in picoScan and multiScan. CVSSv3 score of 5.3
More info.

SICK has found two vulnerabilities that affect the SICK Flexi Compact. Highest CVSSv3 score of 7.5
More info.

PowerDNS 

PowerDNS DNSdist contains an emergency release fixing a security issue that allows a remote attacker to cause a DoS.
More info.

Ribbon Communications 

Ribbon Communications Apollo has been updated to fix several vulnerabilities, including Use of Hard-coded Credentials.
More info.

IBM 

IBM has published Critical bulletins for Operational Decision Manager, Cloud Transformation Advisor, Cloud Pak for Security, Rapid Infrastructure Automation, API Connect, and Cloud Pak for Business Automation.
More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details