Vulnerability Summary for the Week of November 20, 2023

Vulnerability Summary for the Week of November 20, 2023 11/27/2023 01:00 PM EST The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) in the past week. NVD is sponsored by CISA. In some cases, the vulnerabilities in the bulletin may not …

Vulnerability Summary for the Week of October 2, 2023

Vulnerability Summary for the Week of October 2, 2023 10/10/2023 06:30 PM EDT The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) in the past week. NVD is sponsored by CISA. In some cases, the vulnerabilities in the bulletin may not …

Vulnerability Summary for the Week of August 28, 2023

Vulnerability Summary for the Week of August 28, 2023 09/06/2023 03:00 PM EDT The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) in the past week. NVD is sponsored by CISA. In some cases, the vulnerabilities in the bulletin may not …

Vulnerability Summary for the Week of July 17, 2023

Vulnerability Summary for the Week of July 17, 2023 07/24/2023 03:00 PM EDT   High Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source & Patch Info oliva_expertise — oliva_expertise_eks  Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Oliva Expertise Oliva Expertise EKS allows SQL Injection.This issue affects Oliva …

Vulnerability Summary for the Week of July 10, 2023

Vulnerability Summary for the Week of July 10, 2023 07/19/2023 09:00 AM EDT The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) in the past week. NVD is sponsored by CISA. In some cases, the vulnerabilities in the bulletin may not …

Vulnerability Summary for the Week of June 27, 2022

Vulnerability Summary for the Week of June 27, 2022 07/04/2022 06:19 AM EDT Original release date: July 4, 2022   High Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source & Patch Info codesys — gateway In CODESYS Gateway Server V2 for versions prior to V2.3.9.38 only a part of the the specified password is …

Vulnerability Summary for the Week of May 16, 2022

Vulnerability Summary for the Week of May 16, 2022 05/24/2022 06:37 AM EDT Original release date: May 24, 2022   High Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source & Patch Info There were no high vulnerabilities recorded this week. Back to top   Medium Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source …

Vulnerability Summary for the Week of April 25, 2022

Vulnerability Summary for the Week of April 25, 2022 05/02/2022 06:16 AM EDT Original release date: May 2, 2022   High Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source & Patch Info jfinalcms_project — jfinalcms JFinalCMS v2.0 was discovered to contain a SQL injection vulnerability via the Article Management function. 2022-04-22 7.5 CVE-2022-27341MISC link-admin_project …

Vulnerability Summary for the Week of March 28, 2022

Vulnerability Summary for the Week of March 28, 2022 04/04/2022 11:19 AM EDT Original release date: April 4, 2022   High Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source & Patch Info genians — genian_nac An remote code execution vulnerability due to SSTI vulnerability and insufficient file name parameter validation was discovered in Genian …

Vulnerability Summary for the Week of November 22, 2021

Vulnerability Summary for the Week of November 22, 2021 11/29/2021 07:00 AM EST Original release date: November 29, 2021   High Vulnerabilities PrimaryVendor — Product Description Published CVSS Score Source & Patch Info 4mosan — gcb_doctor 4MOSAn GCB Doctor’s login page has improper validation of Cookie, which allows an unauthenticated remote attacker to bypass authentication …