HK-CERT

TitleDescriptionDate
Apache Tomcat Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in Apache Tomcat, a remote attacker could exploit some of these vulnerabilities to trigger security restriction bypass, cross-site scripting and information disclosure on the targeted system.Release Date: 19 Nov 2024
Palo Alto PAN-OS Multiple vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in Palo Alto PAN-OS. A remote user could exploit these vulnerabilities to trigger elevation of privilege and security restriction bypass on the targeted system. Note: CVE-2024-0012 and CVE-2024-9474 are actively exploited in...Release Date: 19 Nov 2024
VMWare Products Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in VMware products. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege and remote code execution on the targeted system. [Updated on 2024-11-19]Updated Description and Risk level changed to extremely high....Release Date: 19 Sep 2024
Ruckus Products Remote Code Execution Vulnerabilityopen in new windowA vulnerability was identified in Ruckus Products. A remote attacker could exploit this vulnerability to trigger remote code execution on the targeted system.Release Date: 18 Nov 2024
Ubuntu Linux Kernel Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in Ubuntu Linux Kernel. An attacker could exploit some of these vulnerabilities to trigger denial of service condition and remote code execution on the targeted system. [Updated on 2024-11-05]Updated Solutions and Related Links. [Updated...Release Date: 4 Nov 2024
Citrix Products Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in Citrix Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege and remote code execution on the targeted system. Note:Proof of concept exploit for CVE-2024-8068 and...Release Date: 15 Nov 2024
Fortinet Products Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in Fortinet Products. A remote attacker could exploit some of these vulnerabilities to trigger remote code execution, sensitive information disclosure, security restriction bypass, data manipulation, and elevation of privilege on the targeted system.Release Date: 15 Nov 2024
GitLab Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in GitLab. A remote attacker could exploit these vulnerabilities to trigger denial of service, cross-site scripting, remote code execution, security restriction bypass, and sensitive information disclosure on the targeted system.Release Date: 15 Nov 2024
Ivanti Products Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities have been identified in Ivanti Products. A remote attacker could exploit these vulnerability to trigger denial of service condition, remote code execution, elevation of privilege, data manipulation and sensitive information disclosure on the targeted system.Release Date: 15 Nov 2024
Microsoft Edge Multiple Vulnerabilitiesopen in new windowMultiple vulnerabilities were identified in Microsoft Edge. A remote attacker could exploit some of these vulnerabilities to trigger sensitive information disclosure, security restriction bypass and remote code execution on the targeted system.Release Date: 15 Nov 2024