EulerOS 2.0 SP9 : openssl (EulerOS-SA-2023-1850)
According to the versions of the openssl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :
- A timing based side channel exists in the Op ...
Continue Reading
May 14, 2023
golang-websocket – security update
Bulletin has no descriptionRead More ...
Continue Reading
May 13, 2023
Description of the security update for SharePoint Server 2019: May 9, 2023 (KB5002389)
None
## Summary
This security update resolves a Microsoft SharePoint Server spoofing vulnerability, Microsoft SharePoint Server information disclosure vulnerability, and Microsoft SharePoint Server re ...
Continue Reading
May 13, 2023
Security Updates for Microsoft SQL Server ODBC Driver (April 2023)
The Microsoft SQL Server driver installation on the remote host is missing a security update. It is, therefore, affected by the following vulnerability:
- A remote code execution vulnerability. An a ...
Continue Reading
May 13, 2023
Security Updates for Microsoft SQL Server ODBC Driver (April 2023)
The Microsoft SQL Server driver installation on the remote host is missing a security update. It is, therefore, affected by the following vulnerability:
- A remote code execution vulnerability. An a ...
Continue Reading
May 13, 2023
Siemens SIMATIC Cloud Connect 7
## 1. EXECUTIVE SUMMARY
* **CVSS v3 7.2 **
* **ATTENTION:** Exploitable remotely/low attack complexity
* **Vendor:** Siemens
* **Equipment:** SIMATIC Cloud Connect 7
* **Vulnerabilities:** I ...
Continue Reading
May 11, 2023
Fedora 37 : vtk (2023-2cf9dd7d52)
The remote Fedora 37 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2023-2cf9dd7d52 advisory.
- There is a NULL pointer dereference vulnerability in VTK ...
Continue Reading
May 11, 2023
CVE-2023-1387
Grafana is an open-source platform for monitoring and observability. Starting with the 9.1 branch, Grafana introduced the ability to search for a JWT in the URL query parameter auth_token and use it a ...
Continue Reading
May 11, 2023
Security Update for SysInternals Sysmon (May 2023)
The SysInternals Sysmon application installed on the remote host is missing a security update. It is, therefore, affected by the following vulnerability:
- An elevation of privilege vulnerability. A ...
Continue Reading
May 10, 2023
Microsoft Windows AV1 Video Extensions RCE (May 2023)
The Windows 'AV1 Video Extension' app installed on the remote host is affected by remote code execution vulnerability.
An attacker can exploit this to bypass authentication and execute unauthorized ar ...
Continue Reading
May 10, 2023