EU-CERT

TitleDescriptionDate
2024-117: Zero-Day Vulnerabilities in Palo Alto Networks PAN-OSopen in new windowPalo Alto Networks released security updates for two actively exploited zero-day vulnerabilities in Palo Alto Networks PAN-OS. If exploited, these vulnerabilities could allow a remote unauthenticated attacker to gain administrator privileges, or a PAN-OS administrator to perform actions on the firewall with root privileges.Tuesday, November 19, 2024 10:55:57 AM CET
2024-116: Microsoft November 2024 Patch Tuesdayopen in new windowMicrosoft's November 2024 Patch Tuesday addresses 91 vulnerabilities, including four zero-day vulnerabilities. Two of these zero-days, CVE-2024-43451 (NTLM Hash Disclosure Spoofing) and CVE-2024-49039 (Windows Task Scheduler Elevation of Privilege), have been actively exploited. These vulnerabilities allow attackers to potentially gain unauthorised access or escalate privileges through minimal user interaction or crafted applications.Wednesday, November 13, 2024 05:43:08 PM CET
2024-115: QNAP NAS Zero-Day Vulnerabilitiesopen in new windowOn October 29 and 30, 2024, QNAP released patches for two critical zero-day vulnerabilities, CVE-2024-50387 and CVE-2024-50388, affecting NAS devices. These vulnerabilities allow remote attackers to gain root access and execute arbitrary commands on compromised devices.Thursday, October 31, 2024 01:18:46 PM CET
2024-114: Multiple Critical CISCO Vulnerabilitiesopen in new windowA set of critical vulnerabilities affecting Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco Secure Firewall Management Center (FMC) Software, and Cisco Nexus Dashboard Fabric Controller (NDFC) have been identified. These vulnerabilities can potentially allow attackers to conduct various types of attacks, including command injection, remote command execution, arbitrary command execution, and unauthorised access through static credentials due to improper input validation or insecure handling of web services components. Successful exploitation could allow attackers to execute arbitrary commands, gain root-level access through SSH, or gain unauthorised access via static credentials. They obtained CVSS score of 9 out of 10 or more.Friday, October 25, 2024 12:11:37 PM CEST
2024-113: Critical 0-day Vulnerability in Fortinet FortiManageropen in new windowOn October 23, 2024, Fortinet released a security advisory addressing a critical 0-day vulnerability in its FortiManager product. If exploited, a remote unauthenticated attacker could execute arbitrary code or commands on the affected device.Thursday, October 24, 2024 10:56:10 AM CEST
2024-112: Critical Vulnerability in Kubernetesopen in new windowOn October 14, 2024, Kubernetes released a security advisory addressing a critical vulnerability affecting the Kubernetes Image Builder project.Thursday, October 17, 2024 04:37:11 PM CEST
2024-111: Multiple Vulnerabilities in Splunk Enterprise and Splunk Cloudopen in new windowOn October 14, 2024, Splunk released several advisories addressing multiple high and medium severity vulnerabilities affecting Splunk Enterprise and Splunk Cloud. These vulnerabilities could lead to arbitrary file write to Windows system root directory, access to potentially restricted data and remote code execution.Wednesday, October 16, 2024 09:37:06 AM CEST
2024-110: Critical Vulnerability in Ivanti Productsopen in new windowOn October 8, 2024, Ivanti addressed a critical vulnerability in Ivanti Connect Secure and Ivanti Policy Secure.Wednesday, October 16, 2024 09:36:33 AM CEST
2024-109: Critical vulnerabilities in Gitlabopen in new windowOn October 9, 2024, GitLab released an advisory addressing several critical vulnerabilities in GitLab EE/CE affecting versions from 8.16 to 17.4.1.Friday, October 11, 2024 04:26:55 PM CEST
2024-108: Palo Alto Critical Vulnerabilitiesopen in new windowPalo Alto Networks has disclosed multiple critical vulnerabilities in its Expedition tool that can lead to unauthorised access to firewall credentials and sensitive data, including usernames, passwords, and API keys. The vulnerabilities allow attackers to execute arbitrary commands, read or write files, and exploit SQL injection flaws. Successful exploitation could result in a full takeover of affected systems.Friday, October 11, 2024 10:22:58 AM CEST
2024-107: Critical Vulnerability in Firefoxopen in new windowOn October 9th, 2024, the Mozilla Foundation issued a security advisory regarding a critical use-after-free vulnerability (CVE-2024-9680) in Firefox.Friday, October 11, 2024 10:08:06 AM CEST