Archive for Cybersecurity - page 168

Cisco Releases Security Updates for Multiple Products

Original release date: November 3, 2022 Cisco has released security updates for vulnerabilities affecting multiple products. A remote attacker could exploit some of these vulnerabilities to take control of an affected system. For updates addressing lower severity vulnerabilities, see the Cisco Security Advisories page. CISA…

Continue reading →

Aggiornamenti per prodotti CISCO (AL02/221103/CSIRT-ITA)

Aggiornamenti di sicurezza Cisco sanano molteplici vulnerabilità, di cui 5 con gravità “alta”, presenti in vari prodotti. Source link Author: [email protected] Article used for cyber security disclosure.

Continue reading →

OpenSSL Releases Security Update

Original release date: November 1, 2022 OpenSSL has released a security advisory to address two vulnerabilities, CVE-2022-3602 and CVE-2022-3786, affecting OpenSSL versions 3.0.0 through 3.0.6. Both CVE-2022-3602 and CVE-2022-3786 can cause a denial of service. According to OpenSSL, a cyber threat actor leveraging CVE-2022-3786, “can…

Continue reading →

Vulnerabilità in Azure CLI (AL01/221031/CSIRT-ITA)

Rilevata una vulnerabilità, con gravità “critica”, in Azure Command-Line Interface (CLI), la nota interfaccia a riga di comando, tipicamente utilizzata per l’amministrazione remota delle risorse di Azure. Tale vulnerabilità, qualora sfruttata, potrebbe permettere l’esecuzione di comandi sui dispositivi target. Source link Author: [email protected] Article used…

Continue reading →

Joint CISA FBI MS-ISAC Guide on Responding to DDoS Attacks and DDoS Guidance for Federal Agencies

Original release date: October 28, 2022 CISA, the Federal Bureau of Investigation (FBI), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) have released Understanding and Responding to Distributed Denial-of-Service Attacks to provide organizations proactive steps to reduce the likelihood and impact of distributed denial-of-service…

Continue reading →

Aggiornamento Google Chrome risolve 1 vulnerabilità di tipo high (AL02/221028/CSIRT-ITA)

Il team di Google ha rilasciato un aggiornamento di Chrome per Windows, MacOS e Linux che corregge una vulnerabilità di tipo high identificata dalla CVE 2022-3723. Source link Author: [email protected] Article used for cyber security disclosure.

Continue reading →

CISA Has Added One Known Exploited Vulnerability to Catalog

Original release date: October 28, 2022 CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. This type of vulnerability is a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise. Note:…

Continue reading →

Vulnerabilità in Apache Linkis JDBC EngineConn (AL01/221028/CSIRT-ITA)

Rilevata vulnerabilità che interessa il prodotto Apache Linkis JDBC EngineConn. Tale vulnerabilità, qualora sfruttata, potrebbe permettere ad un utente malintenzionato remoto l’esecuzione di codice arbitrario sui dispositivi interessati. Source link Author: [email protected] Article used for cyber security disclosure.

Continue reading →

Page 168 of 198 ← First ... ← 166 167 168 169 170 → ... Last →