Security Bulletin: IBM DataPower Gateway vulnerable to HTTP request smuggling (CVE-2022-35256)

## Summary This issue may affect the management interface for the API Connect Gateway Service. IBM has addressed the CVE. ## Vulnerability Details ** CVEID: **[CVE-2022-35256]() ** DESCRIPTION: **Node ...

Continue Reading

CVSS3 - CRITICAL

CVE-2022-4564

A vulnerability classified as problematic has been found in University of Central Florida Materia up to 9.0.1-alpha1. This affects the function before of the file fuel/app/classes/controller/api.php o ...

Continue Reading
GitHub Announces Free Secret Scanning for All Public Repositories

[![GitHub Secret Scanning](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() GitHub on Thursday said it is making available its sec ...

Continue Reading
Implement Risk-Based Vulnerability Management with Qualys TruRisk™ : Part 2

This blog is a continuation of our first blog on implementing risk-based vulnerability management with [Qualys TruRiskTM](). In the first blog, we covered how to correctly tag and categorize assets fo ...

Continue Reading
CISA Alert: Veeam Backup and Replication Vulnerabilities Being Exploited in Attacks

[![Veeam Backup and Replication](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() The U.S. Cybersecurity and Infrastructure Securi ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Zoom Client for Meetings 5.10.6 < 5.12.0 Vulnerability (ZSB-22023)

The version of Zoom Client for Meetings installed on the remote host is between 5.10.6 and 5.12.0. It is, therefore, affected by a vulnerability as referenced in the ZSB-22023 advisory. - Zoom Clien ...

Continue Reading
CVE-2022-42849

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
Security Updates for Microsoft .NET Framework (December 2022)

The Microsoft .NET Framework installation on the remote host is missing a security update. It is, therefore, affected by a remote code execution vulnerability in the handling of XPS files.Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: