Skip to main content

CND News and Blog

New Vulnerabilities Wednesday 07 September


Monthly Patches are out for Qualcomm, Google Android, Google Pixel, and Samsung. New Alerts for Triangle Microworks, Cognex, Helmholz, and MB Connect Line.

Qualcomm 

Qualcomm Monthly Patches are out, with 17 security vulnerabilities, 3 rated Critical, 13 rated High, and 1 rated Medium. Highest CVSSv3 score of 9.8
More info.

Google 

Android Monthly Patches are out, with 19 security vulnerabilities mostly rated High, plus third-party software updates. The most severe could allow for RCE.
More info. And here.

Pixel Monthly Patches are out, with 3 additional security vulnerabilities, including Android and Qualcomm patches. Two are rated Critical, 1 Moderate.
More info.

Samsung 

Samsung Monthly Patches are out with Android patches and at least 21 Samsung security vulnerabilities, 1 rated High and the rest Moderate.
More info.

Triangle Microworks 

Triangle Microworks TMW IEC 61850 Software Library and TMW IEC 60870-6 Software Library contain a vulnerability that could lead to a DoS. CVSSv3 score of 7.5
More info.

Cognex 

Cognex 3D-A1000 Dimensioning System contains several ulnerabilities, including: Missing Authentication for Critical Function, Improper Output Neutralization for Logs, and Client-side Enforcement of Server-side Security. Successful exploitation of these vulnerabilities could result in unauthorized password changes, escalation of privileges, falsifying of password logs, and bypassing of web access controls. Highest CVSSv3 score of 9.8
More info.

Helmholz 

Multiple vulnerabilities have been found in myREX24 and myREX24.virtual. Highest CVSSv3 score of 9.8
Most of the issues are patched, some are waiting a future update.
More info. And here.

MB Connect Line 

Multiple vulnerabilities exist in mymbCONNECT24 and mbCONNECT24 software. Highest CVSSv3 score of 9.8
More info. And here. And here. And here. And here.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Tuesday, 16 April 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/