PHP Security Update Advisory (CVE-2023-3824)

Overview   An update has been made available to fix vulnerabilities in PHP. Users of affected versions are advised to update to the latest version.   Affected Products   PHP versions earlier than 8.0.30, 8.1.22, and 8.2.9   Resolved Vulnerabilities   Stack buffer overflow vulnerability due to insufficient length checking

MLsoft Tgate Product Security Update Advisory

Overview   MLsoft has released a security update that addresses a vulnerability in its Tgate product. Users of affected products are advised to update to the latest version.   Affected Products   All versions of Tgate 3.0 Tgate 4.0 through versions below 4.0.r572 Tgate 2.0 and earlier versions are discontinued,

IBM family of products (such as IBM Engineering Requirements Management DOORS Next) security update advisories

Overview   An update has been made available to fix vulnerabilities in the IBM family of products. Users of affected versions are advised to update to the latest version.   Affected Products   CVE-2021-35573, CVE-2021-35660, CVE-2021-35662, CVE-2021-35572, CVE-2021-35657, CVE-2021-35574, CVE-2021-35656, CVE-2021-35661, CVE-2021-35659, CVE-2021-35658 IBM Engineering Requirements Management DOORS Next 7.0.2

WordPress Bricks Builder Plugin Security Update Advisory (CVE-2024-25600)

Overview   An update has been made available to fix vulnerabilities in WordPress Bricks Builder. Users of affected versions are advised to update to the latest version.   Affected Products   All versions of WordPress Bricks Builder below 1.9.6.1   Resolved Vulnerabilities   Remote code execution vulnerability in the unauthenticated

Oracle VM VirtualBox Security Update Advisory (CVE-2023-22098, CVE-2023-22099, CVE-2023-22100)

Overview   An update has been made available to fix vulnerabilities in Oracle VM VirtualBox. Users of affected versions are advised to update to the latest version.   Affected Products   Oracle VM VirtualBox versions earlier than 7.0.12   Resolved Vulnerabilities   Vulnerabilities in Oracle VM VirtualBox (CVE-2023-22098, CVE-2023-22099, CVE-2023-22100)

ConnectWise ScreenConnect Security Update Advisory (CVE-2024-1708, CVE-2024-1709)

Overview   An update has been made available to fix vulnerabilities in ConnectWise ScreenConnect. Users of affected versions are advised to update to the latest version.   Affected Products   ConnectWise ScreenConnect 23.9.7 and earlier versions   Resolved Vulnerabilities   Path traversal vulnerability in ConnectWise ScreenConnect (CVE-2024-1708) Authentication bypass vulnerability

Cisco Product Security Update Advisory (CVE-2020-3259)

Overview   An update has been made available to fix vulnerabilities in Cisco. This vulnerability was exploited in a real-world attack in 2024, and users of affected versions should make sure to update to the latest version.   Affected Products   CVE-2020-3259 Vulnerability in the AnyConnect IKEv2 Remote Access (with

MS Family February 2024 Routine Security Update Advisory

Overview   Microsoft(https://www.microsoft.com) has released a security update that addresses vulnerabilities in products it has supplied. Users of affected products are advised to update to the latest version.   Affected Products   – Prior to Windows 10 Version 1607 for 32-bit Systems, Microsoft Defender for Endpoint for Windows– Prior to

VMware Family February 2024 Round 1 Security Update Advisory

Overview   VMware(https://www.vmware.com) has released a security update that addresses vulnerabilities in products it has been made. Users of affected products are encouraged to update to the latest version.   Affected Products   VMware VMware Enhanced Authentication Plug-in (EAP) Any version   Resolved Vulnerabilities   Arbitrary Authentication Relay and Session

Cisco Family February 2024 First Security Update Advisory

Overview   Cisco(https://www.cisco.com) has released a security update that addresses vulnerabilities in products it has been made. Users of affected systems are advised to update to the latest version.   Affected Products   Cisco Unified Intelligence Center   Resolved Vulnerabilities   Vulnerability in Cisco Unified Intelligence Center due to lack