A huge collection of 3400+ free website templates JAR theme com WP themes and more at the biggest community-driven free web design site

Current Activities

IBM Sterling Control Center vulnerable to denial of service due to Spring Boot and remote code execution due to Spring Framework (CVE-2023-20883 and CVE-2016-1000027)

Advisory No: TZCERT/SA/2024/02/08-2 Date of First Release: 8th February 2024 Source: IBM Software Affected: IBM Sterling Control Center Overview: IBM has disclosed the remote code vulnerabilities affecting IBM Sterling Control Center. The vulnerabilities could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. Description: The vulnerabilities …

Read More »

Cisco Expressway Series Cross-Site Request Forgery Vulnerabilities (CVE-2024-20252, CVE-2024-20254 and CVE-2024-20255)

Advisory No: TZCERT/SA/2024/02/08-1 Date of First Release: 8th February 2024 Source: Cisco Software Affected: Cisco Expressway Series Overview: Cisco Expressway Series are affected by vulnerabilities tracked as CVE-2024-20252, CVE-2024-20254 and CVE-2024-20255 which could allow remote attacker to perform arbitrary actions via cross-site request forgery vulnerability affecting the system. Description: Following …

Read More »

TZCERT-SU-24-0149 (Elasticsearch Security Update)

Elasticsearch has released security updates to address vulnerabilities in APM server, Elastic Network Drive Connector and Kibana. Exploitation of these vulnerabilities may allow an attacker to take control of affected system. Users and administrators are encouraged to review Elasticsearch Security Advisories apm-server, elastic-network-drive-connector, kibana-8-12-1 and kibana-8-12-1-7-17-18 and apply necessary updates.

Read More »

TZCERT-SU-24-0148 (Chrome Security Update)

Google has released security updates to address vulnerabilities in Chrome for iOS and ChromeOS. Exploitation of these vulnerabilities may allow an attacker to take control of affected system. Users and administrators are encouraged to review Chrome Security Advisories update-for-ios and update-for-chromeos and apply necessary updates.

Read More »

TZCERT-SU-24-0147 (Ubuntu Security Update)

Ubuntu has released security updates to address vulnerabilities in kernel and Firefox. Exploitation of these vulnerabilities may allow an attacker to take control of affected system. Users and administrators are encouraged to review Ubuntu Security Advisories USN-6626-1 and USN-6610-2 and apply necessary updates.

Read More »

Subscribe to Receive Regular Updates

sub2.fw

A digest of Tanzania Computer Incident Response Teams coverage of cybersecurity news across the globe