ENISA EUVD · EUVD-2022-4935Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2026-0180Dell Data Protection Advisor: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell Data Protection Advisor ausnutzen, um beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu erzeugen, Sicherheitsmaßnahmen zu umgehen und nicht näher spezifizierte Angriffe zu starten.
Official advisory ↗BSI · German · WID-SEC-2025-2366Oracle Hyperion: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Hyperion ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2024-1186IBM DB2 REST: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM DB2 REST ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen oder einen Denial-of-Service-Zustand zu verursachen.
Official advisory ↗BSI · German · WID-SEC-2024-0794Dell ECS: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell ECS ausnutzen, um seine Privilegien zu erweitern, beliebigen Programmcode mit Administratorrechten auszuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Cross-Site-Scripting-Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service Zustand herbeizuführen.
Official advisory ↗BSI · German · WID-SEC-2023-0530Aruba ArubaOS: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Aruba ArubaOS ausnutzen, um seine Privilegien zu erhöhen, Code zur Ausführung zu bringen, einen Cross Site Scripting Angriff durchzuführen, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service zu verursachen.
Official advisory ↗BSI · German · WID-SEC-2022-0400OpenSSL: Mehrere Schwachstellen ermöglichen Denial of ServiceEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in OpenSSL ausnutzen, um einen Denial of Service Angriff durchzuführen oder Informationen offenzulegen.
Official advisory ↗BSI · German · WID-SEC-2023-1030Oracle Siebel CRM: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Siebel CRM ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2022-0602IBM Security Verify Access: Mehrere SchwachstellenEin entfernter anonymer, authentisierter oder lokaler Angreifer oder ein Angreifer aus dem angrenzenden Netzwerk kann mehrere Schwachstellen in IBM Security Verify Access ausnutzen, um einen Cross-Site-Scripting-Angriff durchzuführen, vertrauliche Informationen offenzulegen, seine Privilegien zu erweitern, Informationen zu manipulieren, einen Denial-of-Service-Zustand zu verursachen und Sicherheitsmaßnahmen zu umgehen.
Official advisory ↗Canadian Centre for Cyber Security · English · AV21-627IBM security advisoryBetween 6 and 12 December 2021 IBM published Security Bulletins to address vulnerabilities in multiple products. Included were critical updates for the following:
IBM App Connect Enterprise
https://www.ibm.com/blogs/psirt/security-bulletin-ibm-app-connect-enterprise-v11-is-affected-by-vulnerabilities-in-node-js-cve-2021-23358-3/
Official advisory ↗Canadian Centre for Cyber Security · English · AV21-569IBM security advisoryBetween 1 and 7 November 2021 IBM published Security Bulletins to address vulnerabilities in multiple products. Included were critical updates for the following:
IBM WIoTP MessageGateway
Official advisory ↗Canadian Centre for Cyber Security · English · AV21-535IBM security advisoryBetween 18 and 24 October 2021 IBM published Security Bulletins to address vulnerabilities in multiple products. Included were critical updates for the following:
IBM Watson Explorer Deep Analytics Edition Foundational Components
https://www.ibm.com/blogs/psirt/security-bulletin-vulnerabilities-affect-watson-explorer-foundational-components-cve-2021-3712-cve-2021-3711/
Official advisory ↗Cyber Security Agency of Singapore · English · CSA-SB-20210825Security Bulletin 25 Aug 2021The Cyber Security Agency of Singapore included this CVE in its official Security Bulletin 25 Aug 2021, published on 25 August 2021. Open the linked bulletin for the product, severity and reference information published in that issue.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0432Multiples vulnérabilités dans les produits SiemensDe multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0199Multiples vulnérabilités dans les produits VMwareecord?id=CVE-2021-22923
Référence CVE CVE-2021-22925
https://www.cve.org/CVERecord?id=CVE-2021-22925
Référence CVE CVE-2021-22926
https://www.cve.org/CVERecord?id=CVE-2021-22926
Référence CVE CVE-2021-22946
https://www.cve.org/CVERecord?id=CVE-2021-22946
Référence CVE CVE-2021-22947
https://www.cve.org/CVERecord?id=CVE-2021-22947
Référence CVE CVE-2021-23840
https://www.cve.org/CVERecord?id=CVE-2021-23840
Référence CVE CVE-2021-23841
https://www.cve.org/CVERecord?id=CVE-2021-23841
Référence CVE CVE-2021-3449
https://www.cve.org/CVERecord?id=CVE-2021-3449
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-37600
https://www.cve.org/CVERecord?id=CVE-2021-37600
Référence CVE CVE-2021-38297
https://www.cve.org/CVERecord?id=CVE-2021-38297
Référence CVE CVE-2021-38561
https://www.cve.org/CVERecord?id=CVE-2021-38561
Référence CVE CVE-2021-39293
https://www.cve.org/CVERecord?id=CVE-2021-39293
Référence CVE CVE-2021-3995
https://www.cve.org/CVERecord?id=CVE-2021-3995
Référence CVE CVE-2021-3996
https://www.cve.org/CVERecord?id=CVE-2021-3996
Référence CVE CVE-2021-41089
https://www.cve.org/CVERecord?id=CVE-2021-41089
Référence CVE CVE-2021-41091
https://www.cve.org/CVERecord?id=CVE-2
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0442Multiples vulnérabilités dans les produits IBMDe multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0180Multiples vulnérabilités dans les produits IBMecord?id=CVE-2021-35560
Référence CVE CVE-2021-35564
https://www.cve.org/CVERecord?id=CVE-2021-35564
Référence CVE CVE-2021-35565
https://www.cve.org/CVERecord?id=CVE-2021-35565
Référence CVE CVE-2021-35578
https://www.cve.org/CVERecord?id=CVE-2021-35578
Référence CVE CVE-2021-35586
https://www.cve.org/CVERecord?id=CVE-2021-35586
Référence CVE CVE-2021-35588
https://www.cve.org/CVERecord?id=CVE-2021-35588
Référence CVE CVE-2021-35603
https://www.cve.org/CVERecord?id=CVE-2021-35603
Référence CVE CVE-2021-3572
https://www.cve.org/CVERecord?id=CVE-2021-3572
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-41035
https://www.cve.org/CVERecord?id=CVE-2021-41035
Référence CVE CVE-2021-4160
https://www.cve.org/CVERecord?id=CVE-2021-4160
Référence CVE CVE-2021-43138
https://www.cve.org/CVERecord?id=CVE-2021-43138
Référence CVE CVE-2021-44906
https://www.cve.org/CVERecord?id=CVE-2021-44906
Référence CVE CVE-2022-0778
https://www.cve.org/CVERecord?id=CVE-2022-0778
Référence CVE CVE-2022-1471
https://www.cve.org/CVERecord?id=CVE-2022-1471
Référence CVE CVE-2022-2097
https://www.cve.org/CVERecord?id=CVE-2022-2097
Référence CVE CVE-2022-21299
https://www.cve.org/CVERecord?id=CVE-2022-
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0145Multiples vulnérabilités dans les produits IBMord?id=CVE-2021-31525
Référence CVE CVE-2021-33194
https://www.cve.org/CVERecord?id=CVE-2021-33194
Référence CVE CVE-2021-33195
https://www.cve.org/CVERecord?id=CVE-2021-33195
Référence CVE CVE-2021-33196
https://www.cve.org/CVERecord?id=CVE-2021-33196
Référence CVE CVE-2021-33197
https://www.cve.org/CVERecord?id=CVE-2021-33197
Référence CVE CVE-2021-33198
https://www.cve.org/CVERecord?id=CVE-2021-33198
Référence CVE CVE-2021-34558
https://www.cve.org/CVERecord?id=CVE-2021-34558
Référence CVE CVE-2021-36221
https://www.cve.org/CVERecord?id=CVE-2021-36221
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-38297
https://www.cve.org/CVERecord?id=CVE-2021-38297
Référence CVE CVE-2021-39293
https://www.cve.org/CVERecord?id=CVE-2021-39293
Référence CVE CVE-2021-41190
https://www.cve.org/CVERecord?id=CVE-2021-41190
Référence CVE CVE-2021-4160
https://www.cve.org/CVERecord?id=CVE-2021-4160
Référence CVE CVE-2021-41771
https://www.cve.org/CVERecord?id=CVE-2021-41771
Référence CVE CVE-2021-41772
https://www.cve.org/CVERecord?id=CVE-2021-41772
Référence CVE CVE-2021-44716
https://www.cve.org/CVERecord?id=CVE-2021-44716
Référence CVE CVE-2022-0778
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0214Multiples vulnérabilités dans les produits IBMréférer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité IBM 6828527 du 10 mars 2023
https://www.ibm.com/support/pages/node/6828527
Bulletin de sécurité IBM 6962773 du 10 mars 2023
https://www.ibm.com/support/pages/node/6962773
Bulletin de sécurité IBM 6962775 du 10 mars 2023
https://www.ibm.com/support/pages/node/6962775
Référence CVE CVE-2020-4051
https://www.cve.org/CVERecord?id=CVE-2020-4051
Référence CVE CVE-2021-29425
https://www.cve.org/CVERecord?id=CVE-2021-29425
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-3733
https://www.cve.org/CVERecord?id=CVE-2021-3733
Référence CVE CVE-2021-3737
https://www.cve.org/CVERecord?id=CVE-2021-3737
Référence CVE CVE-2021-4160
https://www.cve.org/CVERecord?id=CVE-2021-4160
Référence CVE CVE-2021-43138
https://www.cve.org/CVERecord?id=CVE-2021-43138
Référence CVE CVE-2022-0391
https://www.cve.org/CVERecord?id=CVE-2022-0391
Référence CVE CVE-2022-24758
https://www.cve.org/CVERecord?id=CVE-2022-24758
Référence CVE CVE-2022-25881
https://www.cve.org/CVERecord?id=CVE-2022-25881
Référence CVE CVE-2022-34339
https://www.cve.org/CVERecord?id=CVE-2022-
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0178Multiples vulnérabilités dans Aruba ArubaOS6.x.x à 8.10.x.x antérieures à 8.10.0.5
SD-WAN versions 8.7.0.0-2.3.0.x antérieures à 8.7.0.0-2.3.0.9
Résumé
De multiples vulnérabilités ont été découvertes dans Aruba ArubaOS.
Certaines d'entre elles permettent à un attaquant de provoquer une
exécution de code arbitraire à distance, un contournement de la
politique de sécurité et une atteinte à l'intégrité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Aruba ARUBA-PSA-2023-002 du 28 février 2023
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-002.txt
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2023-22747
https://www.cve.org/CVERecord?id=CVE-2023-22747
Référence CVE CVE-2023-22748
https://www.cve.org/CVERecord?id=CVE-2023-22748
Référence CVE CVE-2023-22749
https://www.cve.org/CVERecord?id=CVE-2023-22749
Référence CVE CVE-2023-22750
https://www.cve.org/CVERecord?id=CVE-2023-22750
Référence CVE CVE-2023-22751
https://www.cve.org/CVERecord?id=CVE-2023-22751
Référence CVE CVE-2023-22752
https://www.cve.org/CVERecord?id=CVE-2023-22752
Référence CVE CVE-2023-22753
https://www.cve.org/CVERecord?id=CVE-2023-22753
Référence CVE CVE-2023-22754
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0051Multiples vulnérabilités dans les produits JuniperERecord?id=CVE-2021-35565
Référence CVE CVE-2021-35567
https://www.cve.org/CVERecord?id=CVE-2021-35567
Référence CVE CVE-2021-35578
https://www.cve.org/CVERecord?id=CVE-2021-35578
Référence CVE CVE-2021-35586
https://www.cve.org/CVERecord?id=CVE-2021-35586
Référence CVE CVE-2021-35603
https://www.cve.org/CVERecord?id=CVE-2021-35603
Référence CVE CVE-2021-3564
https://www.cve.org/CVERecord?id=CVE-2021-3564
Référence CVE CVE-2021-3573
https://www.cve.org/CVERecord?id=CVE-2021-3573
Référence CVE CVE-2021-35940
https://www.cve.org/CVERecord?id=CVE-2021-35940
Référence CVE CVE-2021-3621
https://www.cve.org/CVERecord?id=CVE-2021-3621
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-3715
https://www.cve.org/CVERecord?id=CVE-2021-3715
Référence CVE CVE-2021-3752
https://www.cve.org/CVERecord?id=CVE-2021-3752
Référence CVE CVE-2021-37576
https://www.cve.org/CVERecord?id=CVE-2021-37576
Référence CVE CVE-2021-3765
https://www.cve.org/CVERecord?id=CVE-2021-3765
Référence CVE CVE-2021-39275
https://www.cve.org/CVERecord?id=CVE-2021-39275
Référence CVE CVE-2021-40085
https://www.cve.org/CVERecord?id=CVE-2021-40085
Référence CVE CVE-2021-4028
https://www.cve.org/CVERecord?id=CVE-2021-4028
Référence CVE CVE-2021-4034
https://www.cve.org/CVERecord?id=CVE-2021-4
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-928Multiples vulnérabilités dans les produits IBMecord?id=CVE-2021-23337
Référence CVE CVE-2021-23450
https://www.cve.org/CVERecord?id=CVE-2021-23450
Référence CVE CVE-2021-29425
https://www.cve.org/CVERecord?id=CVE-2021-29425
Référence CVE CVE-2021-3177
https://www.cve.org/CVERecord?id=CVE-2021-3177
Référence CVE CVE-2021-32803
https://www.cve.org/CVERecord?id=CVE-2021-32803
Référence CVE CVE-2021-32804
https://www.cve.org/CVERecord?id=CVE-2021-32804
Référence CVE CVE-2021-33502
https://www.cve.org/CVERecord?id=CVE-2021-33502
Référence CVE CVE-2021-34538
https://www.cve.org/CVERecord?id=CVE-2021-34538
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-3733
https://www.cve.org/CVERecord?id=CVE-2021-3733
Référence CVE CVE-2021-3737
https://www.cve.org/CVERecord?id=CVE-2021-3737
Référence CVE CVE-2021-3765
https://www.cve.org/CVERecord?id=CVE-2021-3765
Référence CVE CVE-2021-37701
https://www.cve.org/CVERecord?id=CVE-2021-37701
Référence CVE CVE-2021-37712
https://www.cve.org/CVERecord?id=CVE-2021-37712
Référence CVE CVE-2021-37713
https://www.cve.org/CVERecord?id=CVE-2021-37713
Référence CVE CVE-2021-3807
https://www.cve.org/CVERecord?id=CVE-2021-3807
Référence CVE CVE-2021-3918
https://www.cve.org/CVERecord?id=CVE-2021-3
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-916Multiples vulnérabilités dans les produits Juniperg/CVERecord?id=CVE-2021-35578
Référence CVE CVE-2021-35586
https://www.cve.org/CVERecord?id=CVE-2021-35586
Référence CVE CVE-2021-35588
https://www.cve.org/CVERecord?id=CVE-2021-35588
Référence CVE CVE-2021-35603
https://www.cve.org/CVERecord?id=CVE-2021-35603
Référence CVE CVE-2021-3564
https://www.cve.org/CVERecord?id=CVE-2021-3564
Référence CVE CVE-2021-3573
https://www.cve.org/CVERecord?id=CVE-2021-3573
Référence CVE CVE-2021-3653
https://www.cve.org/CVERecord?id=CVE-2021-3653
Référence CVE CVE-2021-3656
https://www.cve.org/CVERecord?id=CVE-2021-3656
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-3715
https://www.cve.org/CVERecord?id=CVE-2021-3715
Référence CVE CVE-2021-3752
https://www.cve.org/CVERecord?id=CVE-2021-3752
Référence CVE CVE-2021-37576
https://www.cve.org/CVERecord?id=CVE-2021-37576
Référence CVE CVE-2021-3765
https://www.cve.org/CVERecord?id=CVE-2021-3765
Référence CVE CVE-2021-37750
https://www.cve.org/CVERecord?id=CVE-2021-37750
Référence CVE CVE-2021-4034
https://www.cve.org/CVERecord?id=CVE-2021-4034
Référence CVE CVE-2021-4155
https://www.cve.org/CVERecord?id=CVE-2021-4155
Référence CVE CVE-2021-4160
https://www.cve.org/CVERecord?id=CVE-2021-416
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-650Multiples vulnérabilités dans les produits Juniperd?id=CVE-2021-35561
Référence CVE CVE-2021-35564
https://www.cve.org/CVERecord?id=CVE-2021-35564
Référence CVE CVE-2021-35565
https://www.cve.org/CVERecord?id=CVE-2021-35565
Référence CVE CVE-2021-35567
https://www.cve.org/CVERecord?id=CVE-2021-35567
Référence CVE CVE-2021-35578
https://www.cve.org/CVERecord?id=CVE-2021-35578
Référence CVE CVE-2021-35586
https://www.cve.org/CVERecord?id=CVE-2021-35586
Référence CVE CVE-2021-35588
https://www.cve.org/CVERecord?id=CVE-2021-35588
Référence CVE CVE-2021-35603
https://www.cve.org/CVERecord?id=CVE-2021-35603
Référence CVE CVE-2021-36690
https://www.cve.org/CVERecord?id=CVE-2021-36690
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-37750
https://www.cve.org/CVERecord?id=CVE-2021-37750
Référence CVE CVE-2021-41617
https://www.cve.org/CVERecord?id=CVE-2021-41617
Référence CVE CVE-2021-42574
https://www.cve.org/CVERecord?id=CVE-2021-42574
Référence CVE CVE-2021-42739
https://www.cve.org/CVERecord?id=CVE-2021-42739
Référence CVE CVE-2022-21245
https://www.cve.org/CVERecord?id=CVE-2022-21245
Référence CVE CVE-2022-21270
https://www.cve.org/CVERecord?id=CVE-2022-21270
Référence CVE CVE-2022-21303
https://www.cve.org/CVERecord?id=CVE-2022-21303
Référence CVE CVE-2022-21304
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-597Multiples vulnérabilités dans IBM Spectrum Protect PlusDe multiples vulnérabilités ont été découvertes dans IBM Spectrum
Protect Plus. Certaines d'entre elles permettent à un attaquant de
provoquer une exécution de code arbitraire à distance, un déni de
service à distance et un contournement de la politique de sécurité.
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-570Multiples vulnérabilités dans les produits IBMVERecord?id=CVE-2016-5397
Référence CVE CVE-2018-11798
https://www.cve.org/CVERecord?id=CVE-2018-11798
Référence CVE CVE-2018-1320
https://www.cve.org/CVERecord?id=CVE-2018-1320
Référence CVE CVE-2019-0205
https://www.cve.org/CVERecord?id=CVE-2019-0205
Référence CVE CVE-2019-0210
https://www.cve.org/CVERecord?id=CVE-2019-0210
Référence CVE CVE-2020-13949
https://www.cve.org/CVERecord?id=CVE-2020-13949
Référence CVE CVE-2021-22945
https://www.cve.org/CVERecord?id=CVE-2021-22945
Référence CVE CVE-2021-22946
https://www.cve.org/CVERecord?id=CVE-2021-22946
Référence CVE CVE-2021-22947
https://www.cve.org/CVERecord?id=CVE-2021-22947
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-44228
https://www.cve.org/CVERecord?id=CVE-2021-44228
Référence CVE CVE-2021-45046
https://www.cve.org/CVERecord?id=CVE-2021-45046
Référence CVE CVE-2021-45105
https://www.cve.org/CVERecord?id=CVE-2021-45105
Référence CVE CVE-2022-0778
https://www.cve.org/CVERecord?id=CVE-2022-0778
Référence CVE CVE-2022-1292
https://www.cve.org/CVERecord?id=CVE-2022-1292
Référence CVE CVE-2022-1343
https://www.cve.org/CVERecord?id=CVE-2022-1343
Référence CVE CVE-2022-1434
https://www.cve.org/CVERecord?id=CVE-2022-1434
Référence CVE CVE-2022-1473
https://www.cve.org/CVERecord?id=CVE-2022-1
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-429Multiples vulnérabilités dans Nessus Network MonitorDe multiples vulnérabilités ont été découvertes dans Nessus Network
Monitor. Certaines d'entre elles permettent à un attaquant de provoquer
une exécution de code arbitraire à distance, un déni de service à
distance et une atteinte à l'intégrité des données.
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-239Multiples vulnérabilités dans les produits IBMecord?id=CVE-2021-23222
Référence CVE CVE-2021-23727
https://www.cve.org/CVERecord?id=CVE-2021-23727
Référence CVE CVE-2021-29678
https://www.cve.org/CVERecord?id=CVE-2021-29678
Référence CVE CVE-2021-3139
https://www.cve.org/CVERecord?id=CVE-2021-3139
Référence CVE CVE-2021-3156
https://www.cve.org/CVERecord?id=CVE-2021-3156
Référence CVE CVE-2021-33026
https://www.cve.org/CVERecord?id=CVE-2021-33026
Référence CVE CVE-2021-35517
https://www.cve.org/CVERecord?id=CVE-2021-35517
Référence CVE CVE-2021-35578
https://www.cve.org/CVERecord?id=CVE-2021-35578
Référence CVE CVE-2021-36090
https://www.cve.org/CVERecord?id=CVE-2021-36090
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-38926
https://www.cve.org/CVERecord?id=CVE-2021-38926
Référence CVE CVE-2021-38931
https://www.cve.org/CVERecord?id=CVE-2021-38931
Référence CVE CVE-2021-38951
https://www.cve.org/CVERecord?id=CVE-2021-38951
Référence CVE CVE-2021-39002
https://www.cve.org/CVERecord?id=CVE-2021-39002
Référence CVE CVE-2021-4034
https://www.cve.org/CVERecord?id=CVE-2021-4034
Référence CVE CVE-2021-41182
https://www.cve.org/CVERecord?id=CVE-2021-41182
Référence CVE CVE-2021-41183
https://www.cve.org/CVERecord?id=CVE-2021-41183
Référence CVE CVE-2021-41184
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-216Multiples vulnérabilités dans les produits SiemensCVERecord?id=CVE-2021-32944
Référence CVE CVE-2021-32946
https://www.cve.org/CVERecord?id=CVE-2021-32946
Référence CVE CVE-2021-32948
https://www.cve.org/CVERecord?id=CVE-2021-32948
Référence CVE CVE-2021-32950
https://www.cve.org/CVERecord?id=CVE-2021-32950
Référence CVE CVE-2021-32952
https://www.cve.org/CVERecord?id=CVE-2021-32952
Référence CVE CVE-2021-3449
https://www.cve.org/CVERecord?id=CVE-2021-3449
Référence CVE CVE-2021-3450
https://www.cve.org/CVERecord?id=CVE-2021-3450
Référence CVE CVE-2021-3672
https://www.cve.org/CVERecord?id=CVE-2021-3672
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-37208
https://www.cve.org/CVERecord?id=CVE-2021-37208
Référence CVE CVE-2021-37209
https://www.cve.org/CVERecord?id=CVE-2021-37209
Référence CVE CVE-2021-37701
https://www.cve.org/CVERecord?id=CVE-2021-37701
Référence CVE CVE-2021-37712
https://www.cve.org/CVERecord?id=CVE-2021-37712
Référence CVE CVE-2021-37713
https://www.cve.org/CVERecord?id=CVE-2021-37713
Référence CVE CVE-2021-39134
https://www.cve.org/CVERecord?id=CVE-2021-39134
Référence CVE CVE-2021-39135
https://www.cve.org/CVERecord?id=CVE-2021-39135
Référence CVE CVE-2021-40366
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-171Multiples vulnérabilités dans les commutateurs Aruba AOS-CXDe multiples vulnérabilités ont été découvertes dans les commutateurs
Aruba AOS-CX. Certaines d'entre elles permettent à un attaquant de
provoquer une exécution de code arbitraire à distance, un déni de
service à distance et une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-124Multiples vulnérabilités dans les produits SiemensCVERecord?id=CVE-2020-26146
Référence CVE CVE-2020-26147
https://www.cve.org/CVERecord?id=CVE-2020-26147
Référence CVE CVE-2020-28400
https://www.cve.org/CVERecord?id=CVE-2020-28400
Référence CVE CVE-2020-8670
https://www.cve.org/CVERecord?id=CVE-2020-8670
Référence CVE CVE-2020-8703
https://www.cve.org/CVERecord?id=CVE-2020-8703
Référence CVE CVE-2020-8704
https://www.cve.org/CVERecord?id=CVE-2020-8704
Référence CVE CVE-2021-20093
https://www.cve.org/CVERecord?id=CVE-2021-20093
Référence CVE CVE-2021-20094
https://www.cve.org/CVERecord?id=CVE-2021-20094
Référence CVE CVE-2021-3449
https://www.cve.org/CVERecord?id=CVE-2021-3449
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-37185
https://www.cve.org/CVERecord?id=CVE-2021-37185
Référence CVE CVE-2021-37186
https://www.cve.org/CVERecord?id=CVE-2021-37186
Référence CVE CVE-2021-37194
https://www.cve.org/CVERecord?id=CVE-2021-37194
Référence CVE CVE-2021-37195
https://www.cve.org/CVERecord?id=CVE-2021-37195
Référence CVE CVE-2021-37196
https://www.cve.org/CVERecord?id=CVE-2021-37196
Référence CVE CVE-2021-37197
https://www.cve.org/CVERecord?id=CVE-2021-37197
Référence CVE CVE-2021-37198
https://www.cve.org/CVERecord?id=CVE-2021-37198
Référence CVE CVE-2021-37204
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-052Multiples vulnérabilités dans Oracle MySQLnérabilités ont été découvertes dans Oracle MySQL.
Certaines d'entre elles permettent à un attaquant de provoquer un déni
de service à distance, une exécution de code arbitraire et une atteinte
à l'intégrité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Oracle cpujan2022.html du 18 janvier 2022
https://www.oracle.com/security-alerts/cpujan2022.html#AppendixMSQL
Référence CVE CVE-2021-22946
https://www.cve.org/CVERecord?id=CVE-2021-22946
Référence CVE CVE-2021-3634
https://www.cve.org/CVERecord?id=CVE-2021-3634
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2022-21245
https://www.cve.org/CVERecord?id=CVE-2022-21245
Référence CVE CVE-2022-21249
https://www.cve.org/CVERecord?id=CVE-2022-21249
Référence CVE CVE-2022-21253
https://www.cve.org/CVERecord?id=CVE-2022-21253
Référence CVE CVE-2022-21254
https://www.cve.org/CVERecord?id=CVE-2022-21254
Référence CVE CVE-2022-21256
https://www.cve.org/CVERecord?id=CVE-2022-21256
Référence CVE CVE-2022-21264
https://www.cve.org/CVERecord?id=CVE-2022-21264
Référence CVE CVE-2022-21265
https://www.cve.org/CVERecord?id=CVE-2022-21265
Référence CVE CVE-2022-21270
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-053Multiples vulnérabilités dans Oracle PeopleSoftDe multiples vulnérabilités ont été découvertes dans Oracle PeopleSoft.
Certaines d'entre elles permettent à un attaquant de provoquer une
exécution de code arbitraire à distance, un déni de service à distance
et une atteinte à l'intégrité des données.
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-006Multiples vulnérabilités dans les produits TenableDe multiples vulnérabilités ont été découvertes dans les produits
Tenable. Elles permettent à un attaquant de provoquer une atteinte à
l'intégrité des données et une atteinte à la confidentialité des
données.
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-943Multiples vulnérabilités dans les produits IBMord?id=CVE-2021-33909
Référence CVE CVE-2021-34558
https://www.cve.org/CVERecord?id=CVE-2021-34558
Référence CVE CVE-2021-35065
https://www.cve.org/CVERecord?id=CVE-2021-35065
Référence CVE CVE-2021-35515
https://www.cve.org/CVERecord?id=CVE-2021-35515
Référence CVE CVE-2021-35516
https://www.cve.org/CVERecord?id=CVE-2021-35516
Référence CVE CVE-2021-35517
https://www.cve.org/CVERecord?id=CVE-2021-35517
Référence CVE CVE-2021-36090
https://www.cve.org/CVERecord?id=CVE-2021-36090
Référence CVE CVE-2021-36221
https://www.cve.org/CVERecord?id=CVE-2021-36221
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Référence CVE CVE-2021-3715
https://www.cve.org/CVERecord?id=CVE-2021-3715
Référence CVE CVE-2021-37712
https://www.cve.org/CVERecord?id=CVE-2021-37712
Référence CVE CVE-2021-37713
https://www.cve.org/CVERecord?id=CVE-2021-37713
Référence CVE CVE-2021-38947
https://www.cve.org/CVERecord?id=CVE-2021-38947
Référence CVE CVE-2021-39052
https://www.cve.org/CVERecord?id=CVE-2021-39052
Référence CVE CVE-2021-39053
https://www.cve.org/CVERecord?id=CVE-2021-39053
Référence CVE CVE-2021-39054
https://www.cve.org/CVERecord?id=CVE-2021-39054
Référence CVE CVE-2021-39058
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-932Multiples vulnérabilités dans les produits IBMDe multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquant de provoquer un déni
de service à distance, un contournement de la politique de sécurité et
une atteinte à l'intégrité des données.
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-885Multiples vulnérabilités dans Stormshield Management CenterDe multiples vulnérabilités ont été découvertes dans Stormshield
Management Center. Elles permettent à un attaquant de provoquer un déni
de service à distance et une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-801Multiples vulnérabilités dans Oracle MySQLord?id=CVE-2021-35642
Référence CVE CVE-2021-35643
https://www.cve.org/CVERecord?id=CVE-2021-35643
Référence CVE CVE-2021-35644
https://www.cve.org/CVERecord?id=CVE-2021-35644
Référence CVE CVE-2021-35645
https://www.cve.org/CVERecord?id=CVE-2021-35645
Référence CVE CVE-2021-35646
https://www.cve.org/CVERecord?id=CVE-2021-35646
Référence CVE CVE-2021-35647
https://www.cve.org/CVERecord?id=CVE-2021-35647
Référence CVE CVE-2021-35648
https://www.cve.org/CVERecord?id=CVE-2021-35648
Référence CVE CVE-2021-36222
https://www.cve.org/CVERecord?id=CVE-2021-36222
Référence CVE CVE-2021-3711
https://www.cve.org/CVERecord?id=CVE-2021-3711
Référence CVE CVE-2021-3712
https://www.cve.org/CVERecord?id=CVE-2021-3712
Gestion détaillée du document
le 20 octobre 2021
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de la Défense et de la Sécurité Nationale / Agence nationale de la
sécurité des systèmes d'information
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-747Multiples vulnérabilités dans les produits SynologyDe multiples vulnérabilités ont été découvertes dans les produits
Synology. Elles permettent à un attaquant de provoquer une exécution de
code arbitraire à distance et un déni de service à distance.
A la date de rédaction de l'avis, les vulnérabilités affectant le
produit DiskStation Manager ne disposent pas encore d'un identifiant
CVE.
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-729Multiples vulnérabilités dans TenableDe multiples vulnérabilités ont été découvertes dans Tenable. Elles
permettent à un attaquant de provoquer un problème de sécurité non
spécifié par l'éditeur.
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-656Multiples vulnérabilités dans OpenSSLDe multiples vulnérabilités ont été découvertes dans OpenSSL. Elles
permettent à un attaquant de provoquer un déni de service à distance, un
contournement de la politique de sécurité et une atteinte à la
confidentialité des données.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2021-002326OpenSSL に複数の脆弱性OpenSSL Project より、 OpenSSL Security Advisory [24 August 2021] が公開されました。 OpenSSL には、次の脆弱性が存在します。 深刻度 - 高(Severity: High) * SM2 暗号データの復号処理におけるバッファオーバーフロー (CWE-120)- CVE-2021-3711 * SM2 暗号データの復号処理を行うアプリケーションは、EVP_PKEY_decrypt() 関数を通常 2 回呼び出すが、1 回目の呼び出しで計算されるバッファサイズが 2 回目の呼び出しで必要なサイズより小さくなるような SM2 データがアプリケーションに渡された場合、バッファオーバーフローが発生する可能性がある 深刻度 - 中(Severity: Moderate) * ASN.1 文字列処理におけるバッファエラー (CWE-119)- CVE-2021-3712 * OpenSSL において、ASN.1 形式の文字列は ASN1_STRING 構造で表され、その構造では NULL 終端が必須とはされていない。しかし、OpenSSL 内には NULL 終端を前提として処理を行う関数が複数存在するため、アプリケーション内で直接生成されるなどした NULL 終端を持たない ASN1_STRING 構造文字列を処理させられた場合、バッファエラーが発生する可能性がある
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-5361OpenSSL 취약점 보안 업데이트 권고#### OpenSSL 취약점 보안 업데이트 권고 2021.08.25
##### □ 개요
o OpenSSL에서 발생하는 취약점을 해결한 보안 업데이트 발표
o 낮은 버전 사용자는 서비스 거부 공격에 취약하므로, 최신 버전으로 업데이트 권고
##### □ 설명 [1]
o OpenSSL에서 버퍼오버플로우로 인해 발생하는 서비스거부 취약점(CVE-2021-3711)
o OpenSSL에서 발생하는 정보노출 및 서비스거부 취약점(CVE-2021-3712)
##### □ 영향받는 버전
o OpenSSL 1.1.1k 및 이전 버전
##### □ 해결 방안
o 취약점이 해결된 버전(OpenSSL 1.1.1l 이상)으로 업데이트 적용
##### □ 기타 문의사항
o 한국인터넷진흥원 사이버민원센터: 국번없이 118
[참고사이트]
[1]
https://www.openssl.org/news/secadv/20210824.txt
##### □ 작성 : 침해사고분석단 취약점분석팀
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0239Kwetsbaarheden verholpen in Solarwinds PlatformEen kwaadwillende kan de kwetsbaarheden misbruiken om een Denial-of-Service te veroorzaken, een command-injection uit te voeren, of om een Cross-Site-Scripting-aanval uit te voeren. Een dergelijke aanval kan leiden tot uitvoer van willekeurige code in de browser van het slachtoffer.
Voor succesvol misbruik moet de kwaadwillende voorafgaande authenticatie hebben.
Official advisory ↗NCSC-NL · Dutch · NCSC-2026-0112Kwetsbaarheden verholpen in Siemens productenMultiple OpenSSL versions prior to 1.1.1l and 1.0.2za contain buffer overrun and memory disclosure vulnerabilities in ASN.1 string processing, affecting various products including Oracle Siebel CRM, Oracle Communications, NetApp, HPE, and Solarwinds, with CVSS scores up to 7.4.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0336Kwetsbaarheden verholpen in Oracle HyperionOpenSSL and various Oracle products exhibit vulnerabilities related to ASN.1 string processing and unauthorized access, with specific versions addressing critical security issues and CVSS scores indicating significant risk.
Official advisory ↗