By michele654 on Wednesday, 15 May 2024
Category: Vulnerabilities

New Vulnerabilities Wednesday 15 May


Monthly Patches are out for Microsoft, Adobe, and Fortinet. New Alerts for Mozilla, Aruba, Bosch, and Linux.

Microsoft 

Microsoft Monthly Patches are out, with 67 patched vulnerabilities, 1 rated Critical, and 1 other actively exploited. Highest CVSSv3 score of 8.8
More info. And here.

Microsoft has patched Edge for the currently exploited chromium vulnerability.
More info.

Adobe 

Adobe has published Monthly Patches for Acrobat Reader, Illustrator, Substance3D Painter, Aero, Substance3D Designer, Animate, FrameMaker, and Dreamweaver. Highest CVSSv3 score of 9.8 in the Dreamweaver update.
More info.

Mozilla 

Mozilla has published updates for Firefox, Firefox ESR, and Thunderbird to fix several vulnerabilities, including arbitrary code execution.
More info. And here.

Fortinet 

Fortinet Monthly Patches are out with 18 bulletins. Highest CVSSv3 score of 8.8
More info.

A URL redirection to untrusted site vulnerability in FortiAuthenticator may allow an attacker to redirect users to an arbitrary website via a crafted URL. CVSSv3 score of 5.8
More info.

Aruba 

HPE Aruba Networking has released patches for Aruba Access Points running InstantOS and ArubaOS 10 that address multiple security vulnerabilities. Highest CVSSv3 score of 9.8
More info. And here.

Bosch 

A RCE vulnerability has been found in the Praesensa Logging Application, Praesideo Logging Application and Praesideo PC Call Station that allows a remote attacker to execute arbitrary code on the server machine. CVSSv3 score of 9.8
More info.

Linux 

SUSE has updated the kernel. More info.
Red Hat has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details