Skip to main content

CND News and Blog

New Vulnerabilities Wednesday 11 January


New Alerts for Google Chrome, Moxa, Westermo, MAHO-PBX, NetApp, Western Digital, Black Box, and Linux.

Google 

Google has updated Chrome for Desktop to fix 17 security vulnerabilities.
More info.

Microsoft is aware. More info.

Moxa 

TN-4900 Series contains a Use of Hard-coded Credentials vulnerability that allows an attacker to gain privileges if an embedded credential is used. Note the CVE is from 2008.
More info.

Westermo 

Ibex Software 6 has a security vulnerability on units with SNMPv3 (v3usm) enabled that allows an attacker can get un-authorized access via SNMP. CVSSv3 score of 9.5
More info.

Mahoroba Kobo 

Multiple vulnerabilities exist in MAHO-PBX NetDevancer series. Highest CVSSv3 score of 9.8
More info.

NetApp 

NetApp has published 6 new bulletins identifying vulnerabilities in third-party software included in their products. Highest CVSSv3 score of 10
5 bulletins have patches.
More info.

Western Digital 

My Cloud OS 5 contains 4 security vulnerabilities that could be exploited by a remote attacker to achieve RCE.
More info.

Black Box 

Black Box KVM Switches and Extenders contain a Path Traversal vulnerability that allows an attacker to read sensitive data on the built-in web servers of the affected devices. CVSSv3 score of 7.5
More info.

Linux Patch

Ubuntu has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Friday, 26 April 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/