Security Updates for Microsoft .NET Framework (February 2023)

The Microsoft .NET Framework installation on the remote host is missing a security update. It is, therefore, affected by multiple vulnerabilities, as follows: - A denial of service (DoS) vulnerabili ...

Continue Reading

CVSS3 - HIGH

Security Updates for Microsoft Office Online Server (February 2023)

The Microsoft Office Web Apps installation on the remote host is missing a security update. It is, therefore, affected by the following vulnerability: - A remote code execution vulnerability. An una ...

Continue Reading

CVSS3 - CRITICAL

Threat Round up for February 10 to February 17

![Threat Round up for February 10 to February 17](https://blog.talosintelligence.com/content/images/2023/02/threat-roundup-1.jpg) Today, Talos is publishing a glimpse into the most prevalent threats w ...

Continue Reading
Node.js 14.x < 14.21.3 / 16.x < 16.19.1 / 18.x < 18.14.1 / 19.x < 19.6.1 Multiple Vulnerabilities (Thursday February 16 2023 Security Releases).

The version of Node.js installed on the remote host is prior to 14.21.3, 16.19.1, 18.14.1, 19.6.1. It is, therefore, affected by multiple vulnerabilities as referenced in the Thursday February 16 2023 ...

Continue Reading
CVE-2022-47986

IBM Aspera Faspex 4.4.1 could allow a remote attacker to execute arbitrary code on the system, caused by a YAML deserialization flaw. By sending a specially crafted obsolete API call, an attacker coul ...

Continue Reading
Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products

## Summary Vulnerabilities in the IBM® Runtime Environment Java™ Technology Edition affect IBM SAN Volume Controller, IBM Storwize V7000, V5000, V3700 and V3500, IBM Spectrum Virtualize Softwa ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2022-47986

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
FortiWeb – Relative path traversal in web API

A path traversal vulnerability [CWE-23] in the API of FortiWeb may allow an authenticated attacker to retrieve specific parts of files from the underlying file system via specially crafted web request ...

Continue Reading

Back to Main

Subscribe for the latest news: