Skip to main content

CND News and Blog

New Vulnerabilities Wednesday 27 April


New Alerts for Google Chrome, Pepperl+Fuchs, Pilz, DrayTek, Bosch, curl, IBM, and Linux.

Google 

Google has updated Chrome for Desktop to include 30 security fixes.
More info.

Microsoft is aware. More info.

Pepperl+Fuchs 

Several products include Remote Desktop Client, which contains a RCE vulnerability. CVSSv3 score of 8.8
More info. And here.

Pilz 

Pilz PMC programming tool, Operator terminal/controller, and Motion controller products include CODESYS Development System software, that has several security vulnerabilities. Highest CVSSv3 score of 9.8
More info. And here. And here.

DrayTek 

Several routers, access points, and switches are affected by the OpenSSL DoS vulnerability. CVSSv3 score of 7.5
No patches yet.
More info.

Bosch 

Bosch resells Phoenix Contact MGUARD products, that have an OpenSSL vulnerability. CVSSv3 score of 7.5
More info.

The access control and time attendance management software Bosch MATRIX uses a version of the Java Spring Framework. CVSSv3 score of 9.8
More info.

curl 

Several Medium and Low vulnerabilities have been fixed in curl.
More info.

IBM 

There is a Dojo vulnerability in WebSphere Liberty used by SPSS Collaboration and Deployment Services. CVSSv3 score of 9.8
More info.

Linux 

SUSE has updated the kernel. More info.
Ubuntu has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Sunday, 28 April 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/