Severe Linux Vulnerabilities affecting 40% of Ubuntu Users

Two high-severity security flaws in the Ubuntu kernel, which were discovered and disclosed by cybersecurity researchers from the cloud security firm Wiz. These flaws are tracked as CVE-2023-2640 and CVE-2023-32629,…

Comments Off on Severe Linux Vulnerabilities affecting 40% of Ubuntu Users

Critical Zero-Days Vulnerability in Atera Windows Installers

Product: Atera remote monitoring and management softwareVulnerability Identifiers: CVE-2023-26077 and CVE-2023-26078Vulnerability Details:The zero-day vulnerabilities in the Windows Installers for the Atera remote monitoring and management software could lead to privilege…

Comments Off on Critical Zero-Days Vulnerability in Atera Windows Installers

New OpenSSH Vulnerability

Product & Affected Versions:OpenSSH, All versions before 9.3p2CVE Identifier:CVE-2023-38408Vulnerability:The vulnerability in OpenSSH allows a remote attacker to potentially execute arbitrary commands on a vulnerable system where OpenSSH's forwarded ssh-agent is…

Comments Off on New OpenSSH Vulnerability

Critical ‘nOAuth’ Flaw in Microsoft Azure AD

Product and Affected Versions:Microsoft Azure Active Directory (AD) multi-tenant OAuth applicationsSeverity and CVE ID:The CVE ID for the vulnerability has not been mentioned in the provided information.Vulnerability:A security flaw named…

Comments Off on Critical ‘nOAuth’ Flaw in Microsoft Azure AD

Critical Security Vulnerability in WooCommerce Stripe Gateway.

Product and Affected Versions:WooCommerce Stripe Gateway WordPress plugin versions 7.4.0 and below.Severity and CVE ID:CVE-2023-34000Vulnerability:The vulnerability in the WooCommerce Stripe Gateway WordPress plugin is an unauthenticated Insecure Direct Object References…

Comments Off on Critical Security Vulnerability in WooCommerce Stripe Gateway.

Wago and Schneider Electric OT Products

Security Researchers Discover Critical Vulnerabilities in Wago and Schneider Electric OT Products Product and Affected Versions:- Wago 750 controllers- Schneider Electric power meters using the ION/TCP protocolSeverity and CVE IDs:-…

Comments Off on Wago and Schneider Electric OT Products

WooCommerce Payments Plugin Flaw Patched 

Product and affected versions:The WooCommerce Payments plugin for WordPress, versions 4.8.0 through 5.6.1.Severity and CEV ID:Critical security flaw. No CEV ID provided.Vulnerability:The flaw could allow an unauthenticated attacker to impersonate…

Comments Off on WooCommerce Payments Plugin Flaw Patched