A huge collection of 3400+ free website templates JAR theme com WP themes and more at the biggest community-driven free web design site

Alerts

HP Security Update

Hewlett-Packard has released security updates to address a vulnerability in HPE MSA. Exploitation of this vulnerability may allow an attacker to gain access to sensitive information.

Users and administrators are encouraged to review HP Security Advisory and apply necessary updates.

Oracle Linux Security Update

Oracle has released security updates to address vulnerabilities in nodejs, glibc and kernel. Exploitation of these vulnerabilities may allow an attacker to take control of affected system.

Users and administrators are encouraged to review Oracle Security Advisories ELSA-2023-5532, ELSA-2023-12853 and ELSA-2023-12858 and apply necessary updates.

Cisco Emergency Responder Static Credentials Vulnerability (CVE-2023-20101)

Advisory No: TZCERT/SA/2023/10/5

Date of First Release: 5th October 2023

Source: CISCO

Software Affected:  Cisco Emergency Responder

Overview:

A vulnerability affecting Cisco Emergency Responder has been disclosed. This vulnerability may lead to arbitrary code execution in the context of privileged user.

Description:

Cisco Emergency Responder has the static user credentials for the root account that is reserved for use during development. This default account with static credentials that cannot be changed or deleted is vulnerable. It allows the attacker to log in to the affected system and execute arbitrary commands as root user.

Impact:

Successful exploitation of this vulnerability may allow the attacker to take control of affected system.

Solution:

Cisco has released a patch for this vulnerability. Users and administrators are encouraged to apply all necessary updates.

References:

  1. https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cer-priv-esc-B9t3hqk9

Ubuntu Security Update

Ubuntu has released security updates to address vulnerabilities in Linux kernel, Django, gnu, exim and freerdp. Exploitation of these vulnerabilities may allow an attacker to take control of affected system.

Users and administrators are encouraged to review Ubuntu Security Advisories USN-6416-1, USN-6414-2, USN-6413-1, USN-6411-1 and USN-6401-1 and apply necessary updates.