Rocky Linux 8 : php:7.4 (RLSA-2022:6542)

The remote Rocky Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2022:6542 advisory. Note that Nessus has not tested for these issues but ha ...

Continue Reading
F5 Networks BIG-IP : iControl SOAP vulnerability (K94221585)

The version of F5 Networks BIG-IP installed on the remote host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the K94221585 advisory. Note that Nessus has n ...

Continue Reading
AlmaLinux 9 : php (ALSA-2022:5904)

The remote AlmaLinux 9 host has packages installed that are affected by a vulnerability as referenced in the ALSA-2022:5904 advisory. Note that Nessus has not tested for this issue but has instead rel ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

High Severity Vulnerabilities Reported in F5 BIG-IP and BIG-IQ Devices

[![F5 BIG-IP and BIG-IQ Devices](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEirxx9Y9QPuT5YjS4qVUHPX6HrTMxaZvdzQAGYAGa4c3ZmQ0d9frPiE2XxlWHjKea_UmoQ_QM5xRb18kEv7DcTQfztfQ2ifqniNVN8lPEwA-zA ...

Continue Reading
Deserialization Of Untrusted Data

soap is vulnerable to untrusted data deserialization. The vulnerability exists due to lack of authentication in `RPCRouterServlet` which allows an attacker to execute arbitrary code in to the system.R ...

Continue Reading

CVSS3 - CRITICAL

Oracle Linux 8 : php:8.0 (ELSA-2022-7624)

The remote Oracle Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2022-7624 advisory. - In PHP versions 7.4.x below 7.4.28, 8.0.x below 8. ...

Continue Reading
RHEL 9 : php (RHSA-2022:8197)

The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2022:8197 advisory. - php: Use after free due to php_filter_f ...

Continue Reading
iControl SOAP vulnerability CVE-2022-41622

BIG-IP and BIG-IQ are vulnerable to cross-site request forgery (CSRF) attacks through iControl SOAP. ([CVE-2022-41622]()) Impact An attacker may trick users who have at least resource administrator ro ...

Continue Reading

Back to Main

Subscribe for the latest news: