Luca Donetti Dontin Il sito di un pazzo sistemista! - page 132

Rilevata vulnerabilità in Apache Commons FileUpload (AL01/230221/CSIRT-ITA)

Rilevata vulnerabilità con gravità “alta” nel componente FileUpload del noto progetto open source Apache Commons. Tale vulnerabilità, qualora sfruttata, potrebbe permettere ad un utente malintenzionato remoto la compromissione della disponibilità del servizio sui dispositivi interessati. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

CISA Adds One Known Exploited Vulnerability to Catalog

Original release date: February 16, 2023 CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. This type of vulnerability is a frequent attack vector for malicious cyber actors and poses a significant risk to the federal enterprise….

Continue reading →

Aggiornamenti per Joomla! (AL03/230217/CSIRT-ITA)

Aggiornamenti di sicurezza risolvono una vulnerabilità con gravità “alta” nel noto CMS Joomla! Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

Partial NTP Pool: The leap second that wasn’t

An analysis of some falsified leap second warnings that appeared in November 2021 on public NTP servers out of the NTP Pool Project. Introduction When using time scales such as UTC that do not use daylight saving time, each day has a strict 60 x…

Continue reading →

CISA Releases Fifteen Industrial Control Systems Advisories

Original release date: February 16, 2023 CISA released fifteen (15) Industrial Control Systems (ICS) advisories on February 16, 2023. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators to review the newly released ICS advisories…

Continue reading →

Aggiornamenti di sicurezza per Node.js (AL04/230217/CSIRT-ITA)

Il Thursday February 2023 Security Releases corregge alcune vulnerabilità, di cui una con gravità “alta”, nel noto framework di sviluppo Node.js. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

Adobe Releases Security Updates for Multiple Products

Original release date: February 14, 2023 Adobe has released security updates to address multiple vulnerabilities in Adobe software. An attacker can exploit these vulnerabilities to take control of an affected system. CISA encourages users and administrators to review the following Adobe Security Bulletins and apply…

Continue reading →

Aggiornamenti per prodotti Netgear (AL08/230215/CSIRT-ITA)

Netgear rilascia aggiornamenti di sicurezza per risolvere una vulnerabilità con gravità “alta” presente in alcuni modelli di router Cable Gateway AX. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

Page 132 of 178 ← First ... 130 131 132 133 134 ... Last →