Ivanti Releases Security Updates for Multiple Products

Ivanti released security updates to address vulnerabilities in Ivanti Cloud Service Application, Ivanti Desktop and Server Management (DSM), Ivanti Connect Secure and Police Secure, Ivanti Sentry, and Ivanti Patch SDK.…

Comments Off on Ivanti Releases Security Updates for Multiple Products

Microsoft Releases December 2024 Security Updates

Microsoft released security updates to address vulnerabilities in multiple Microsoft products. A cyber threat actor could exploit some of these vulnerabilities to take control of an affected system. CISA encourages…

Comments Off on Microsoft Releases December 2024 Security Updates

Vulnerability Summary for the Week of December 2, 2024

High Vulnerabilities PrimaryVendor -- Product Description8 Published CVSS Score Source Info SailPoint Technologies--IdentityIQ  IdentityIQ 8.4 and all 8.4 patch levels prior to 8.4p2, IdentityIQ 8.3 and all 8.3 patch levels…

Comments Off on Vulnerability Summary for the Week of December 2, 2024

CISA Releases New Public Version of CDM Data Model Document

Today, the Cybersecurity and Infrastructure Security Agency (CISA) released an updated public version of the Continuous Diagnostics and Mitigation (CDM) Data Model Document. Version 5.0.1 aligns with fiscal year 2023…

Comments Off on CISA Releases New Public Version of CDM Data Model Document

Vulnerability Summary for the Week of November 25, 2024

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 1000 Projects--Portfolio Management System MCA  A vulnerability has been found in 1000 Projects Portfolio Management System MCA 1.0 and…

Comments Off on Vulnerability Summary for the Week of November 25, 2024

Vulnerability Summary for the Week of November 18, 2024

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 1000projects -- bookstore_management_system  A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System…

Comments Off on Vulnerability Summary for the Week of November 18, 2024

Enhancing Cyber Resilience: Insights from CISA Red Team Assessment of a US Critical Infrastructure Sector Organization

EXECUTIVE SUMMARY The Cybersecurity and Infrastructure Security Agency (CISA) conducted a red team assessment (RTA) at the request of a critical infrastructure organization. During RTAs, CISA’s red team simulates real-world…

Comments Off on Enhancing Cyber Resilience: Insights from CISA Red Team Assessment of a US Critical Infrastructure Sector Organization

Vulnerability Summary for the Week of November 11, 2024

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 1000 Projects--Beauty Parlour Management System  A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0. It has…

Comments Off on Vulnerability Summary for the Week of November 11, 2024

Palo Alto Networks Emphasizes Hardening Guidance

Palo Alto Networks (PAN) has released an important informational bulletin on securing management interfaces after becoming aware of claims of an unverified remote code execution vulnerability via the PAN-OS management…

Comments Off on Palo Alto Networks Emphasizes Hardening Guidance