Search
Close this search box.

Vulnerability Pulse

Every week, we catalog the major industrial cybersecurity vulnerabilities and updates you should know about. Here are the notable threats from the week of May 1 - 7. Sign up to get these updates right to your inbox!

MAY 05, 2022

Cisco

Cisco released security updates for Enterprise NFV infrastructure software due to vulnerabilities found that an attacker could use to gain control of affected systems.

Sources: Cisco, CISA

MAY 04, 2022

CISA

CISA added five vulnerabilities to its Known Exploited Vulnerabilities Catalog.

Sources: Known Exploited Vulnerabilities Catalog, CISA

Mozilla

Mozilla released security updates for Firefox, Firefox ESR and Thunderbird due to vulnerabilities that could lead to an attacker gaining control of affected systems.

Sources: Firefox, Firefox ESR, Thunderbird, CISA

F5

F5 released security advisories on vulnerabilities affecting multiple products that could permit undisclosed requests to bypass the iControl REST authentication in BIG-IP.

Sources: F5, CISA

MAY 03, 2022

Yokogawa

The Yokogawa CENTUM and ProSafe-RS contain vulnerabilities, such as OS command injection, improper authentication, NULL pointer dereference, improper input validation and resource management errors.

Sources: Yokogawa, CISA

MAY 02, 2022

Java Remote Management

The Java Remote Management Interface of all versions of Orlansoft ERP contains a vulnerability that could lead to an attacker executing arbitrary code.

Sources: GitHub, NIST

Delta Electronics

Delta Electronics DIAEnergie contains a bling SQL injection vulnerability.

Sources: NIST

IBM

IBM ICP4A - User Management System Component could allow an attacker with physical access to the system to perform unauthorized actions or gain private information due to insufficient validation vulnerabilities.


Sources: IBM, NIST

SUBSCRIBE

GET ON THE BEAT

 

Keep your finger on the pulse of top industry news

RECENT NEWS
HACKS & ATTACKS
RESOURCES