CVE-2023-35078: Vulnerabilidad de acceso API no autenticada de Ivanti Endpoint Manager Mobile (EPMM) / MobileIron Core
Critical vulnerability in a popular mobile device management solution from Ivanti has been exploited in the wild in limited attacks...
La actualización de parche crítico de Oracle para julio de 2023 aborda 183 CVE
Oracle addresses 183 CVEs in its third quarterly update of 2023 with 508 patches, including 76 critical updates....
CVE-2023-3519: RCE crítica en Netscaler ADC (Citrix ADC) y Netscaler Gateway (Citrix Gateway)
Citrix has released a patch fixing a remote code execution vulnerability in several versions of Netscaler ADC and Netscaler Gateway that has been exploited. Organizations are urged to patch immediately....
CVE-2023-3595, CVE-2023-3596: vulnerabilidades de Rockwell Automation ControlLogix dadas a conocer
Rockwell Automation issues advisory for multiple vulnerabilities, including a critical flaw that could lead to disruption or destruction of critical infrastructure processes....
Búsqueda de módulos de comunicación Rockwell Automation Allen-Bradley afectados por CVE-2023-3595 y CVE-2023-3596 en entornos de OT
Identifying vulnerable systems in your industrial environment can be complex. Si usa la herramienta equivocada pasará por alto los dispositivos afectados.Find out how Tenable OT Security is designed to give you in-depth asset visibility to address these new vulnerabilities without disrupting productivity....
El Martes de parches de Microsoft de julio de 2023 aborda 130 CVE (CVE-2023-36884)
Microsoft addresses 130 CVEs including five that were exploited in the wild as zero-day vulnerabilities and guidance on the malicious use of Microsoft signed drivers....
CVE-2023-33299: Vulnerabilidad crítica por ejecución de código remoto en FortiNAC
Fortinet has released a patch fixing a remote code execution vulnerability in several versions of FortiNAC...
Preguntas frecuentes de vulnerabilidades de transferencias MOVEit y CL0P Ransomware Gang
Frequently asked questions relating to vulnerabilities in MOVEit Transfer, including one that was exploited by the prolific CL0P ransomware gang....
CVE-2023-20887: VMware Aria Operations para inyección de comandos de redes
VMware issues advisory to address three flaws in its VMware Aria Operations for Networks solution, including a critical command injection flaw assigned a CVSSv3 score of 9.8....
El Martes de parches de Microsoft de junio de 2023 aborda 70 CVE (CVE-2023-29357)
Microsoft addresses 70 CVEs in its June 2023 Patch Tuesday update including six rated as critical....
CVE-2023-27997: Desbordamiento de búfer basado en la pila en Fortinet FortiOS y FortiProxy SSL-VPN (XORtigate)
Fortinet says a critical flaw in its SSL-VPN product may have been exploited in the wild in a limited number of cases. Organizations are strongly encouraged to apply these patches immediately....
CVE-2023-34362: MOVEIt Transfer, vulnerabilidad de día cero crítica explotada en la realidad
Discovery of a new zero-day vulnerability in MOVEit Transfer becomes the second zero-day disclosed in a managed file transfer solution in 2023, with reports suggesting that threat actors have stolen data from a number of organizations....