Vulnerability Summary for the Week of December 20, 2021

Original release date: December 27, 2021  High Vulnerabilities Primary Vendor -- Product Description Published CVSS Score Source & Patch Info adobe -- dimension Adobe Dimension versions 3.4.3 (and earlier) is…

Comments Off on Vulnerability Summary for the Week of December 20, 2021

Apache Releases Security Update for HTTP Server

Original release date: December 22, 2021The Apache Software Foundation has released Apache HTTP Server 2.4.52. This version addresses vulnerabilities—CVE-2021-44790 and CVE-2021-44224—one of which may allow a remote attacker to take…

Comments Off on Apache Releases Security Update for HTTP Server

AA21-356A: Mitigating Log4Shell and Other Log4j-Related Vulnerabilities

Original release date: December 22, 2021SummaryThe Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), National Security Agency (NSA), Australian Cyber Security Centre (ACSC), Canadian Centre for…

Comments Off on AA21-356A: Mitigating Log4Shell and Other Log4j-Related Vulnerabilities

Mitigating Log4Shell and Other Log4j-Related Vulnerabilities

Original release date: December 22, 2021CISA, the Federal Bureau of Investigation (FBI), the National Security Agency (NSA), and the cybersecurity authorities of Australia, Canada, New Zealand, and the United Kingdom…

Comments Off on Mitigating Log4Shell and Other Log4j-Related Vulnerabilities

Vulnerability Summary for the Week of December 13, 2021

Original release date: December 21, 2021  High Vulnerabilities Primary Vendor -- Product Description Published CVSS Score Source & Patch Info abb -- omnicore_c30_firmware A Missing Authentication vulnerability in RobotWare for…

Comments Off on Vulnerability Summary for the Week of December 13, 2021

CISA Adds Two Known Exploited Vulnerabilities to Catalog

Original release date: December 15, 2021CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence that threat actors are actively exploiting the vulnerabilities listed in…

Comments Off on CISA Adds Two Known Exploited Vulnerabilities to Catalog

SAP Releases December 2021 Security Updates

Original release date: December 14, 2021SAP has released security updates to address vulnerabilities affecting multiple products. An attacker could exploit some of these vulnerabilities to take control of an affected…

Comments Off on SAP Releases December 2021 Security Updates