Skip to main content

CND News and Blog

New Vulnerabilities Wednesday 31 January


New Alerts for Google Chrome, Emerson, Rockwell Automation, Trend Micro, Salt, SICK, and SuperMicro.

Google 

Google has updated Chrome for Desktop to fix 4 security vulnerabilities.
More info.

Emerson 

Four vulnerabilities exist in Rosemount Gas Chromatographs that allow for a remote attacker to run arbitrary commands in root context, to bypass authentication and acquire admin capabilities, get access to sensitive information, and run arbitrary commands. Highest CVSSv3 score of 9.8
More info.

Rockwell Automation 

A DoS Vulnerability exists in ICE1 Controller. CVSSv3 score of 8.6
More info.

A vulnerability exists in the FactoryTalk Service Platform that allows a remote attacker to obtain the service token and use it for authentication on another FTSP directory. Highest CVSSv3 score of 9.8
More info.

Trend Micro 

uiAirSupport contains a vulnerability that could allow unauthorized impersonation and modification of the library, potentially enabling the execution of code.
More info.

Salt 

High and Medium vulnerabilities have been identified in Salt. Patches will be available today.
More info.

SICK 

A critical vulnerability in Apache ActiveMQ affects the SICK products Field Analytics and Logistics Analytics. CVSSv3 score of 9.8
More info.

SuperMicro 

Several vulnerabilities known collectively as PixieFail exist in SuperMicro products.
No patches yet.
More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Thursday, 02 May 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/