Get patching: SonicWall warns of vulnerabilties in SMA 100 series remote access devices | ZDNet
Rapid7 says it "will release the technical details and proof-of-concept code in January 2022 as part of our coordinated vulnerability disclosure …
Threat Intelligence Feeds – A place to control time
Rapid7 says it "will release the technical details and proof-of-concept code in January 2022 as part of our coordinated vulnerability disclosure …
“The vulnerability is due to the SonicWall SMA SSLVPN Apache HTTPd server … and 500 series products that run version 9.0.0.11-31sv or earlier, …
“The vulnerability is due to the SonicWall SMA SSLVPN Apache httpd … forcing the firm to release a “important firmware upgrade” to fix it, …
“The vulnerability is caused by the SonicWall SMA SSLVPN Apache httpd server's GET method of mod_cgi module environment variables using a single …
Network security vendor SonicWall is urging customers to update their SMA 100 series appliances to the latest version following the discovery of …
Critical security vulnerabilities in SonicWall's Secure Mobile Access (SMA) … “The vulnerability is due to the SonicWall SMA SSLVPN Apache httpd …
SonicWall 'strongly urges' organizations using SMA 100 series … CVE-2021-20039, Authenticated Command Injection Vulnerability as Root, 7.2 High.
(Feed generated with FetchRSS)
(Feed generated with FetchRSS)
(Feed generated with FetchRSS)
(Feed generated with FetchRSS)
Source: https://msrc-blog.microsoft.com/2021/11/17/guidance-for-azure-active-directory-ad-keycredential-property-information-disclosure-in-application-and-service-principal-apis/ Microsoft recently mitigated an information disclosure issue, CVE-2021-42306, to prevent private key data from being stored by some Azure services in the keyCredentials property of an Azure Active Directory (Azure … Read more
(Feed generated with FetchRSS)
(Feed generated with FetchRSS)
(Feed generated with FetchRSS)
(Feed generated with FetchRSS)