CISA and US and International Partners Publish Guidance on Priority Considerations in Product Selection for OT Owners and Operators

Today, CISA—along with U.S. and international partners—released joint guidance Secure by Demand: Priority Considerations for Operational Technology Owners and Operators when Selecting Digital Products. As part of CISA’s Secure by Demand…

Comments Off on CISA and US and International Partners Publish Guidance on Priority Considerations in Product Selection for OT Owners and Operators

Vulnerability Summary for the Week of January 6, 2025

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 5centsCDN--5centsCDN  Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 5centsCDN 5centsCDN allows Reflected XSS.This issue…

Comments Off on Vulnerability Summary for the Week of January 6, 2025

CISA Adds One Vulnerability to the KEV Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2025-0282 Ivanti Connect Secure Vulnerability These types of vulnerabilities are frequent attack vectors for…

Comments Off on CISA Adds One Vulnerability to the KEV Catalog

Vulnerability Summary for the Week of December 30, 2024

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 10CentMail--10CentMail  Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10CentMail allows Reflected XSS.This issue affects…

Comments Off on Vulnerability Summary for the Week of December 30, 2024

Vulnerability Summary for the Week of December 23, 2024

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 1000 Projects--Attendance Tracking Management System  A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. It has…

Comments Off on Vulnerability Summary for the Week of December 23, 2024

Vulnerability Summary for the Week of December 16, 2024

High Vulnerabilities PrimaryVendor -- Product Description Published CVSS Score Source Info 1000 Projects--Attendance Tracking Management System  A vulnerability has been found in 1000 Projects Attendance Tracking Management System 1.0 and…

Comments Off on Vulnerability Summary for the Week of December 16, 2024

Fortinet Releases Security Updates for FortiManager

Fortinet released a security update to address a vulnerability in FortiManager. A remote cyber threat actor could exploit this vulnerability to take control of an affected system. Users and administrators…

Comments Off on Fortinet Releases Security Updates for FortiManager