Fortinet Fixes Vulnerabilities in FortiOS

Fortinet Fixes Vulnerabilities in FortiOS

Researchers have identified vulnerabilities in Fortinet FortiOS that can be used by threat actors for malicious activities. The vulnerabilities are Cross-Site scripting (XSS) and Cross-Site request forgery (CSRF) vulnerabilities. These…
ConnectWise Patches RCE Vulnerabilities

ConnectWise Patches RCE Vulnerabilities

ConnectWise, a remote management  platform  has patched a cross-site scripting) vulnerability that could lead to remote code execution. Threat actors could exploit it to take complete control of the ConnectWise…
RainLoop WebMail Vulnerability

RainLoop WebMail Vulnerability

An unpatched high-severity security flaw has been disclosed in the open-source RainLoop web-based email client that could be weaponized to siphon emails from victims' inboxes. Tracked as CVE-2022-29360, the flaw relates…
ZIMBRA Zero Day ! Actively Exploited

ZIMBRA Zero Day ! Actively Exploited

A new cyber-espionage group has been seen abusing a zero-day vulnerability in the Zimbra  collaboration suite to gain access to the email inboxes. This is exploited from china The attackers began…
Device Brick Flaw in Xerox Patched

Device Brick Flaw in Xerox Patched

A device bricking vulnerability in certain xerox printer models that persisted for more than a year and a half agochas been patched now. The security defect tracked as CVE-2022-23968 was…
CISCO Prime Opened Vulnerable to RCE

CISCO Prime Opened Vulnerable to RCE

A series of vulnerabilities in the web interface of Cisco Prime opened servers to RCE attacks. Cisco Prime is a network management service that provides tools for provisioning, monitoring, optimizing, and…