By michele654 on Tuesday, 30 January 2024
Category: Vulnerabilities

New Vulnerabilities Tuesday 30 January


New Alerts for Festo, Mitsubishi Electric, Hitachi Energy, Hitachi, and Linux.

Festo

Several high severity vulnerabilities in CODESYS V3 affecting Festo products could lead to RCE or DoS. Highest CVSSv3 score of 8.8
More info.

Mitsubishi Electric 

Authentication bypass and RCE vulnerabilities exist in multiple FA engineering software products. Highest CVSSv3 score of 9.8.
No patches, just mitigation.
More info.

An authentication bypass vulnerability exists in the MELSEC WS Series Ethernet Interface Modules. CVSSv3 score of 5.9
No patches, just mitigation.
More info.

Hitachi Energy 

Multiple vulnerabilities in open-source software affect AFF660/665 series, TropOS 1400/2400/6400, and MSM products. Highest CVSSv3 score of 8.1
More info. And here. And here.

Hitachi 

Hitachi has updated Command Suite to fix Apache ActiveMQ vulnerabilities dating back to 2015. Highest CVSSv3 score of 9.8
More info.

Linux 

Red Hat has updated linux firmware, k-patch, and the kernel. More info.
Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments