By michele654 on Wednesday, 24 January 2024
Category: Vulnerabilities

New Vulnerabilities Wednesday 24 January


New Alerts for Google Chrome, Voltronic Power, Fortra, and Linux.

Google 

Google has updated Chrome for Desktop to fix 17 security vulnerabilities, several rated High.
More info. And here.

Voltronic Power 

ViewPower Pro contains several vulnerabilities, including Deserialization of Untrusted Data, Missing Authentication for Critical Function, Exposed Dangerous Method or Function, and OS Command Injection. Highest CVSSv3 score of 9.8
No response from vendor.
More info.

Fortra 

Authentication bypass in Fortra's GoAnywhere MFT allows a remote attacker to create an admin user via the administration portal. CVSSv3 score of 9.8
PoC available.
More info. And here.

Linux 

Amazon Linux has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments