ENISA EUVD · EUVD-2023-0789Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2023-1432Siemens SIMATIC S7: Mehrere SchwachstellenEin Angreifer aus dem angrenzenden Netzwerk oder ein entfernter, anonymer, authentisierter, physischer oder lokaler Angreifer kann mehrere Schwachstellen in Siemens SIMATIC S7 ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand herbeizuführen, seine Privilegien zu erweitern und Daten zu manipulieren.
Official advisory ↗BSI · German · WID-SEC-2024-2086SAP Patchday September 2024Ein Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um seine Privilegien zu erhöhen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu erzeugen oder einen Cross-Site-Scripting-Angriff durchzuführen.
Official advisory ↗BSI · German · WID-SEC-2024-0794Dell ECS: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell ECS ausnutzen, um seine Privilegien zu erweitern, beliebigen Programmcode mit Administratorrechten auszuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Cross-Site-Scripting-Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service Zustand herbeizuführen.
Official advisory ↗BSI · German · WID-SEC-2023-2031Xerox FreeFlow Print Server: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um die Vertraulichkeit, Verfügbarkeit und Integrität des Systems zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2023-1886Sophos Unified Threat Management (UTM) Software: Mehrere SchwachstellenEin entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Sophos Unified Threat Management (UTM) Software ausnutzen, um beliebigen Programmcode auszuführen oder einen Denial of Service Zustand herbeizuführen.
Official advisory ↗BSI · German · WID-SEC-2023-1812Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2023-1424Xerox FreeFlow Print Server für Solaris: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um die Vertraulichkeit, Verfügbarkeit und Integrität des Systems zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2023-1033Oracle MySQL: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2024-1591Juniper JUNOS: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Juniper JUNOS ausnutzen, um einen Denial of Service zu verursachen, Informationen offenzulegen, Privilegien zu erweitern und Sicherheitsmechanismen inklusive zu umgehen.
Official advisory ↗BSI · German · WID-SEC-2023-1553HCL BigFix: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in HCL BigFix ausnutzen, um Sicherheitsvorkehrungen zu umgehen und um das Opfer auf bösartige Webseiten umzuleiten.
Official advisory ↗BSI · German · WID-SEC-2023-1350Splunk Splunk Enterprise: Mehrere Schwachstellen in Komponenten von DrittanbieternEin Angreifer kann mehrere Schwachstellen in Splunk Splunk Enterprise in diversen Komponenten von Drittanbietern ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.
Official advisory ↗BSI · German · WID-SEC-2023-0304OpenSSL: Mehrere SchwachstellenEin entfernter, authentisierter oder anonymer Angreifer kann mehrere Schwachstellen in OpenSSL ausnutzen, um einen Denial of Service Angriff durchzuführen, Informationen offenzulegen oder Chiffretext über ein Netzwerk wiederherzustellen.
Official advisory ↗Cyber Security Agency of Singapore · English · CSA-SB-20230215Security Bulletin 15 Feb 2023The Cyber Security Agency of Singapore included this CVE in its official Security Bulletin 15 Feb 2023, published on 15 February 2023. Open the linked bulletin for the product, severity and reference information published in that issue.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0627Multiples vulnérabilités dans les produits Splunkcord?id=CVE-2022-3996
Référence CVE CVE-2022-40023
https://www.cve.org/CVERecord?id=CVE-2022-40023
Référence CVE CVE-2022-40149
https://www.cve.org/CVERecord?id=CVE-2022-40149
Référence CVE CVE-2022-40150
https://www.cve.org/CVERecord?id=CVE-2022-40150
Référence CVE CVE-2022-42003
https://www.cve.org/CVERecord?id=CVE-2022-42003
Référence CVE CVE-2022-42004
https://www.cve.org/CVERecord?id=CVE-2022-42004
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-45868
https://www.cve.org/CVERecord?id=CVE-2022-45868
Référence CVE CVE-2022-46337
https://www.cve.org/CVERecord?id=CVE-2022-46337
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-1370
https://www.cve.org/CVERecord?id=CVE-2023-1370
Référence CVE CVE-2023-2251
https://www.cve.org/CVERecord?id=CVE-2023-2251
Référence CVE CVE-2023-22946
https://www.cve.org/CVERecord?id=CVE-2023-22946
Référence CVE CVE-2023-2976
https://www.cve.org/CVERecord?id=CVE-2023-2976
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0249Multiples vulnérabilités dans les produits IBMCVERecord?id=CVE-2022-32743
Référence CVE CVE-2022-3509
https://www.cve.org/CVERecord?id=CVE-2022-3509
Référence CVE CVE-2022-3510
https://www.cve.org/CVERecord?id=CVE-2022-3510
Référence CVE CVE-2022-40609
https://www.cve.org/CVERecord?id=CVE-2022-40609
Référence CVE CVE-2022-40897
https://www.cve.org/CVERecord?id=CVE-2022-40897
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-45047
https://www.cve.org/CVERecord?id=CVE-2022-45047
Référence CVE CVE-2022-46337
https://www.cve.org/CVERecord?id=CVE-2022-46337
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-21830
https://www.cve.org/CVERecord?id=CVE-2023-21830
Référence CVE CVE-2023-21843
https://www.cve.org/CVERecord?id=CVE-2023-21843
Référence CVE CVE-2023-21930
https://www.cve.org/CVERecord?id=CVE-2023-21930
Référence CVE CVE-2023-21937
https://www.cve.org/CVERecord?id=CVE-2023-21937
Référence CVE CVE-2023-21938
https://www.cve.org/CVERecord?id=CVE-2023-21938
Référence CVE CVE-2023-21939
https://www.cve.org/CVERecord?id=CVE-2023-21939
Référence CVE CVE-2023-21954
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0199Multiples vulnérabilités dans les produits VMwareERecord?id=CVE-2022-42004
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-42915
https://www.cve.org/CVERecord?id=CVE-2022-42915
Référence CVE CVE-2022-42916
https://www.cve.org/CVERecord?id=CVE-2022-42916
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43551
https://www.cve.org/CVERecord?id=CVE-2022-43551
Référence CVE CVE-2022-43552
https://www.cve.org/CVERecord?id=CVE-2022-43552
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-48174
https://www.cve.org/CVERecord?id=CVE-2022-48174
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1255
https://www.cve.org/CVERecord?id=CVE-2023-1255
Ré
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-1057Multiples vulnérabilités dans les produits VMwareord?id=CVE-2022-49739
Référence CVE CVE-2022-49744
https://www.cve.org/CVERecord?id=CVE-2022-49744
Référence CVE CVE-2022-49746
https://www.cve.org/CVERecord?id=CVE-2022-49746
Référence CVE CVE-2022-49747
https://www.cve.org/CVERecord?id=CVE-2022-49747
Référence CVE CVE-2022-49752
https://www.cve.org/CVERecord?id=CVE-2022-49752
Référence CVE CVE-2022-49754
https://www.cve.org/CVERecord?id=CVE-2022-49754
Référence CVE CVE-2022-49759
https://www.cve.org/CVERecord?id=CVE-2022-49759
Référence CVE CVE-2022-49760
https://www.cve.org/CVERecord?id=CVE-2022-49760
Référence CVE CVE-2023-0045
https://www.cve.org/CVERecord?id=CVE-2023-0045
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1118
https://www.cve.org/CVERecord?id=CVE-2023-1118
Ré
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-1054Multiples vulnérabilités dans les produits VMwareve.org/CVERecord?id=CVE-2022-2097
Référence CVE CVE-2022-3358
https://www.cve.org/CVERecord?id=CVE-2022-3358
Référence CVE CVE-2022-3602
https://www.cve.org/CVERecord?id=CVE-2022-3602
Référence CVE CVE-2022-3786
https://www.cve.org/CVERecord?id=CVE-2022-3786
Référence CVE CVE-2022-3996
https://www.cve.org/CVERecord?id=CVE-2022-3996
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-48703
https://www.cve.org/CVERecord?id=CVE-2022-48703
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1255
https://www.cve.org/CVERecord?id=CVE-2023-1255
Ré
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0969Multiples vulnérabilités dans les produits VMwarecord?id=CVE-2022-4645
Référence CVE CVE-2022-46908
https://www.cve.org/CVERecord?id=CVE-2022-46908
Référence CVE CVE-2022-48281
https://www.cve.org/CVERecord?id=CVE-2022-48281
Référence CVE CVE-2022-48303
https://www.cve.org/CVERecord?id=CVE-2022-48303
Référence CVE CVE-2022-48522
https://www.cve.org/CVERecord?id=CVE-2022-48522
Référence CVE CVE-2022-48554
https://www.cve.org/CVERecord?id=CVE-2022-48554
Référence CVE CVE-2022-48703
https://www.cve.org/CVERecord?id=CVE-2022-48703
Référence CVE CVE-2022-4899
https://www.cve.org/CVERecord?id=CVE-2022-4899
Référence CVE CVE-2022-49043
https://www.cve.org/CVERecord?id=CVE-2022-49043
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0361
https://www.cve.org/CVERecord?id=CVE-2023-0361
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Ré
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0967Multiples vulnérabilités dans les produits VMwaree.org/CVERecord?id=CVE-2022-29526
Référence CVE CVE-2022-3358
https://www.cve.org/CVERecord?id=CVE-2022-3358
Référence CVE CVE-2022-3602
https://www.cve.org/CVERecord?id=CVE-2022-3602
Référence CVE CVE-2022-3786
https://www.cve.org/CVERecord?id=CVE-2022-3786
Référence CVE CVE-2022-3996
https://www.cve.org/CVERecord?id=CVE-2022-3996
Référence CVE CVE-2022-40897
https://www.cve.org/CVERecord?id=CVE-2022-40897
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-21830
https://www.cve.org/CVERecord?id=CVE-2023-21830
Référence CVE CVE-2023-21843
https://www.cve.org/CVERecord?id=CVE-2023-21843
Référence CVE CVE-2023-21930
https://www.cve.org/CVERecord?id=CVE-2023-21930
Référence CVE CVE-2023-21937
https://www.cve.org/CVERecord?id=CVE-2023-
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0864Multiples vulnérabilités dans VMware TanzuERecord?id=CVE-2022-40735
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-45061
https://www.cve.org/CVERecord?id=CVE-2022-45061
Référence CVE CVE-2022-48560
https://www.cve.org/CVERecord?id=CVE-2022-48560
Référence CVE CVE-2022-48564
https://www.cve.org/CVERecord?id=CVE-2022-48564
Référence CVE CVE-2022-48565
https://www.cve.org/CVERecord?id=CVE-2022-48565
Référence CVE CVE-2022-48566
https://www.cve.org/CVERecord?id=CVE-2022-48566
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1255
https://www.cve.org/CVERecord?id=CVE-2023-1255
Ré
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0756Multiples vulnérabilités dans les produits VMwareord?id=CVE-2022-48522
Référence CVE CVE-2022-48893
https://www.cve.org/CVERecord?id=CVE-2022-48893
Référence CVE CVE-2022-4899
https://www.cve.org/CVERecord?id=CVE-2022-4899
Référence CVE CVE-2022-49043
https://www.cve.org/CVERecord?id=CVE-2022-49043
Référence CVE CVE-2022-49063
https://www.cve.org/CVERecord?id=CVE-2022-49063
Référence CVE CVE-2022-49168
https://www.cve.org/CVERecord?id=CVE-2022-49168
Référence CVE CVE-2022-49535
https://www.cve.org/CVERecord?id=CVE-2022-49535
Référence CVE CVE-2022-49636
https://www.cve.org/CVERecord?id=CVE-2022-49636
Référence CVE CVE-2022-49728
https://www.cve.org/CVERecord?id=CVE-2022-49728
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0687
https://www.cve.org/CVERecord?id=CVE-2023-0687
Référence CVE CVE-2023-20873
https://www.cve.org/CVERecord?id=CVE-2023-20873
Référence CVE CVE-2023-20883
https://www.cve.org/CVERecord?id=CVE-2023-2088
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0622Multiples vulnérabilités dans les produits VMwareRecord?id=CVE-2022-4203
Référence CVE CVE-2022-42915
https://www.cve.org/CVERecord?id=CVE-2022-42915
Référence CVE CVE-2022-42916
https://www.cve.org/CVERecord?id=CVE-2022-42916
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43551
https://www.cve.org/CVERecord?id=CVE-2022-43551
Référence CVE CVE-2022-43552
https://www.cve.org/CVERecord?id=CVE-2022-43552
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-49636
https://www.cve.org/CVERecord?id=CVE-2022-49636
Référence CVE CVE-2022-49728
https://www.cve.org/CVERecord?id=CVE-2022-49728
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1255
https://www.cve.org/CVERecord?id=CVE-2023-1255
Ré
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0255Multiples vulnérabilités dans les produits IBMion
Bulletin de sécurité IBM 7228856 du 24 mars 2025
https://www.ibm.com/support/pages/node/7228856
Bulletin de sécurité IBM 7228857 du 24 mars 2025
https://www.ibm.com/support/pages/node/7228857
Bulletin de sécurité IBM 7184085 du 26 mars 2025
https://www.ibm.com/support/pages/node/7184085
Bulletin de sécurité IBM 7229079 du 26 mars 2025
https://www.ibm.com/support/pages/node/7229079
Bulletin de sécurité IBM 7229377 du 28 mars 2025
https://www.ibm.com/support/pages/node/7229377
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-45688
https://www.cve.org/CVERecord?id=CVE-2022-45688
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-26048
https://www.cve.org/CVERecord?id=CVE-2023-26048
Référence CVE CVE-2023-26049
https://www.cve.org/CVERecord?id=CVE-2023-26049
Référence CVE CVE-2023-28439
https://www.cve.org/CVERecord?id=CVE-2023-28439
Référence CVE CVE-2023-33201
https://www.cve.org/CVERecord?id=CVE-2023-33201
Référence CVE CVE-2023-36478
https://www.cve.org/CVERecord?id=CVE-2023-36478
Référence CVE CVE-2023-36479
https://www.cve.org/CVERecord?id=CVE-2023-36479
Référence CVE CVE-2023-40167
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0113Multiples vulnérabilités dans les produits SiemensERecord?id=CVE-2022-39842
Référence CVE CVE-2022-40303
https://www.cve.org/CVERecord?id=CVE-2022-40303
Référence CVE CVE-2022-40304
https://www.cve.org/CVERecord?id=CVE-2022-40304
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43750
https://www.cve.org/CVERecord?id=CVE-2022-43750
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-47069
https://www.cve.org/CVERecord?id=CVE-2022-47069
Référence CVE CVE-2022-47929
https://www.cve.org/CVERecord?id=CVE-2022-47929
Référence CVE CVE-2023-0045
https://www.cve.org/CVERecord?id=CVE-2023-0045
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-0590
https://www.cve.org/CVERecord?id=CVE-2023-0590
Référence CVE CVE-2023-1073
https://www.cve.org/CVERecord?id=CVE-2023-1073
Référence CVE CVE-2023-1074
https://www.cve.org/CVERecord?id=CVE-2023-1074
Référence CVE CVE-2023-1118
https://www.cve.org/CVERecord?id=CVE-2023-1118
Ré
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0842Multiples vulnérabilités dans les produits MoxaDe multiples vulnérabilités ont été découvertes dans les produits Moxa. Elles permettent à un attaquant de provoquer un déni de service à distance et une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0781Multiples vulnérabilités dans les produits Juniper NetworksCVERecord?id=CVE-2021-44225
Référence CVE CVE-2022-23471
https://www.cve.org/CVERecord?id=CVE-2022-23471
Référence CVE CVE-2022-23524
https://www.cve.org/CVERecord?id=CVE-2022-23524
Référence CVE CVE-2022-23525
https://www.cve.org/CVERecord?id=CVE-2022-23525
Référence CVE CVE-2022-23526
https://www.cve.org/CVERecord?id=CVE-2022-23526
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-4886
https://www.cve.org/CVERecord?id=CVE-2022-4886
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1255
https://www.cve.org/CVERecord?id=CVE-2023-1255
Ré
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0754Multiples vulnérabilités dans les produits SAPSAP. Certaines d'entre elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données, une injection de code indirecte à distance (XSS) et un contournement de la politique de sécurité.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité SAP du 09 septembre 2024
https://support.sap.com/en/my-support/knowledge-base/security-notes-news/september-2024.html
Référence CVE CVE-2013-3587
https://www.cve.org/CVERecord?id=CVE-2013-3587
Référence CVE CVE-2022-0778
https://www.cve.org/CVERecord?id=CVE-2022-0778
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2024-33003
https://www.cve.org/CVERecord?id=CVE-2024-33003
Référence CVE CVE-2024-41728
https://www.cve.org/CVERecord?id=CVE-2024-41728
Référence CVE CVE-2024-41729
https://www.cve.org/CVERecord?id=CVE-2024-41729
Référence CVE CVE-2024-41730
https://www.cve.org/CVERecord?id=CVE-2024-41730
Référence CVE CVE-2024-42371
https://www.cve.org/CVERecord?id=CVE-2024-42371
Référence CVE CVE-2024-42378
https://www.cve.org/CVERecord?id=CVE-2024-42378
Référence CVE CVE-2024-42380
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0671Multiples vulnérabilités dans les produits SAPans les produits SAP. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité SAP august-2024 du 13 août 2024
https://support.sap.com/en/my-support/knowledge-base/security-notes-news/august-2024.html
Référence CVE CVE-2022-0778
https://www.cve.org/CVERecord?id=CVE-2022-0778
Référence CVE CVE-2023-0023
https://www.cve.org/CVERecord?id=CVE-2023-0023
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-30533
https://www.cve.org/CVERecord?id=CVE-2023-30533
Référence CVE CVE-2024-28166
https://www.cve.org/CVERecord?id=CVE-2024-28166
Référence CVE CVE-2024-29415
https://www.cve.org/CVERecord?id=CVE-2024-29415
Référence CVE CVE-2024-33003
https://www.cve.org/CVERecord?id=CVE-2024-33003
Référence CVE CVE-2024-33005
https://www.cve.org/CVERecord?id=CVE-2024-33005
Référence CVE CVE-2024-34683
https://www.cve.org/CVERecord?id=CVE-2024-34683
Référence CVE CVE-2024-34688
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0478Multiples vulnérabilités dans les produits SiemensRecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-44792
https://www.cve.org/CVERecord?id=CVE-2022-44792
Référence CVE CVE-2022-44793
https://www.cve.org/CVERecord?id=CVE-2022-44793
Référence CVE CVE-2022-45886
https://www.cve.org/CVERecord?id=CVE-2022-45886
Référence CVE CVE-2022-45887
https://www.cve.org/CVERecord?id=CVE-2022-45887
Référence CVE CVE-2022-45919
https://www.cve.org/CVERecord?id=CVE-2022-45919
Référence CVE CVE-2022-46144
https://www.cve.org/CVERecord?id=CVE-2022-46144
Référence CVE CVE-2023-0160
https://www.cve.org/CVERecord?id=CVE-2023-0160
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1017
https://www.cve.org/CVERecord?id=CVE-2023-1017
Référence CVE CVE-2023-2124
https://www.cve.org/CVERecord?id=CVE-2023-2124
Référence CVE CVE-2023-21255
https://www.cve.org/CVERecord?id=CVE-2023-21255
Référence CVE CVE-2023-21808
https://www.cve.org/CVERecord?id=CVE-2023-2180
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0297Multiples vulnérabilités dans JuniperCVERecord?id=CVE-2021-39534
Référence CVE CVE-2021-40528
https://www.cve.org/CVERecord?id=CVE-2021-40528
Référence CVE CVE-2021-41039
https://www.cve.org/CVERecord?id=CVE-2021-41039
Référence CVE CVE-2022-2795
https://www.cve.org/CVERecord?id=CVE-2022-2795
Référence CVE CVE-2022-3996
https://www.cve.org/CVERecord?id=CVE-2022-3996
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-48522
https://www.cve.org/CVERecord?id=CVE-2022-48522
Référence CVE CVE-2022-48554
https://www.cve.org/CVERecord?id=CVE-2022-48554
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-0809
https://www.cve.org/CVERecord?id=CVE-2023-0809
Référence CVE CVE-2023-1428
https://www.cve.org/CVERecord?id=CVE-2023-1428
Référence CVE CVE-2023-2253
https://www.cve.org/CVERecord?id=CVE-2023-2253
Ré
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0262Multiples vulnérabilités dans les produits IBMcord?id=CVE-2022-2127
Référence CVE CVE-2022-25647
https://www.cve.org/CVERecord?id=CVE-2022-25647
Référence CVE CVE-2022-26377
https://www.cve.org/CVERecord?id=CVE-2022-26377
Référence CVE CVE-2022-36760
https://www.cve.org/CVERecord?id=CVE-2022-36760
Référence CVE CVE-2022-40303
https://www.cve.org/CVERecord?id=CVE-2022-40303
Référence CVE CVE-2022-40304
https://www.cve.org/CVERecord?id=CVE-2022-40304
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-48564
https://www.cve.org/CVERecord?id=CVE-2022-48564
Référence CVE CVE-2022-48565
https://www.cve.org/CVERecord?id=CVE-2022-48565
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-23931
https://www.cve.org/CVERecord?id=CVE-2023-23931
Référence CVE CVE-2023-27043
https://www.cve.org/CVERecord?id=CVE-2023-27043
Référence CVE CVE-2023-3446
https://www.cve.org/CVERecord?id=CVE-2023-3446
Référence CVE CVE-2023-34966
https://www.cve.org/CVERecord?id=CVE-2023-34966
Référence CVE CVE-2023-34967
https://www.cve.org/CVERecord?id=CVE-2023-34967
Référence CVE CVE-2023-34968
https://www.cve.org/CVERecord?id=CVE-2023-34968
Référence CVE CVE-2023-36632
https://www.cve.org/CVERecord?id=CVE-2
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0237Multiples vulnérabilités dans les produits BeldenDe multiples vulnérabilités ont été découvertes dans Belden. Elles
permettent à un attaquant de provoquer un déni de service à distance, un
contournement de la politique de sécurité et une atteinte à la
confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0180Multiples vulnérabilités dans les produits IBMERecord?id=CVE-2022-34169
Référence CVE CVE-2022-34357
https://www.cve.org/CVERecord?id=CVE-2022-34357
Référence CVE CVE-2022-40609
https://www.cve.org/CVERecord?id=CVE-2022-40609
Référence CVE CVE-2022-40897
https://www.cve.org/CVERecord?id=CVE-2022-40897
Référence CVE CVE-2022-41854
https://www.cve.org/CVERecord?id=CVE-2022-41854
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-46364
https://www.cve.org/CVERecord?id=CVE-2022-46364
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1370
https://www.cve.org/CVERecord?id=CVE-2023-1370
Ré
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0145Multiples vulnérabilités dans les produits IBMecord?id=CVE-2022-41723
Référence CVE CVE-2022-41724
https://www.cve.org/CVERecord?id=CVE-2022-41724
Référence CVE CVE-2022-41725
https://www.cve.org/CVERecord?id=CVE-2022-41725
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43548
https://www.cve.org/CVERecord?id=CVE-2022-43548
Référence CVE CVE-2022-43552
https://www.cve.org/CVERecord?id=CVE-2022-43552
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-48337
https://www.cve.org/CVERecord?id=CVE-2022-48337
Référence CVE CVE-2022-48339
https://www.cve.org/CVERecord?id=CVE-2022-48339
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-1370
https://www.cve.org/CVERecord?id=CVE-2023-1370
Référence CVE CVE-2023-20569
https://www.cve.org/CVERecord?id=CVE-2023-20569
Référence CVE CVE-2023-20593
https://www.cve.org/CVERecord?id=CVE-2023-20593
Référence CVE CVE-2023-21930
https://www.cve.org/CVERecord?id=CVE-2023-21
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0119Multiples vulnérabilités dans les produits Siemensg/CVERecord?id=CVE-2022-46393
Référence CVE CVE-2022-4743
https://www.cve.org/CVERecord?id=CVE-2022-4743
Référence CVE CVE-2022-4744
https://www.cve.org/CVERecord?id=CVE-2022-4744
Référence CVE CVE-2022-47629
https://www.cve.org/CVERecord?id=CVE-2022-47629
Référence CVE CVE-2022-48303
https://www.cve.org/CVERecord?id=CVE-2022-48303
Référence CVE CVE-2022-48434
https://www.cve.org/CVERecord?id=CVE-2022-48434
Référence CVE CVE-2022-4900
https://www.cve.org/CVERecord?id=CVE-2022-4900
Référence CVE CVE-2022-4904
https://www.cve.org/CVERecord?id=CVE-2022-4904
Référence CVE CVE-2023-0160
https://www.cve.org/CVERecord?id=CVE-2023-0160
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0330
https://www.cve.org/CVERecord?id=CVE-2023-0330
Référence CVE CVE-2023-0361
https://www.cve.org/CVERecord?id=CVE-2023-0361
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-0494
https://www.cve.org/CVERecord?id=CVE-2023-0494
Référence CVE CVE-2023-0567
https://www.cve.org/CVERecord?id=CVE-2023-0567
Ré
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-1015Multiples vulnérabilités dans les produits Siemensd?id=CVE-2022-45873
Référence CVE CVE-2022-46141
https://www.cve.org/CVERecord?id=CVE-2022-46141
Référence CVE CVE-2022-46143
https://www.cve.org/CVERecord?id=CVE-2022-46143
Référence CVE CVE-2022-46908
https://www.cve.org/CVERecord?id=CVE-2022-46908
Référence CVE CVE-2022-47374
https://www.cve.org/CVERecord?id=CVE-2022-47374
Référence CVE CVE-2022-47375
https://www.cve.org/CVERecord?id=CVE-2022-47375
Référence CVE CVE-2022-48303
https://www.cve.org/CVERecord?id=CVE-2022-48303
Référence CVE CVE-2022-48522
https://www.cve.org/CVERecord?id=CVE-2022-48522
Référence CVE CVE-2022-48560
https://www.cve.org/CVERecord?id=CVE-2022-48560
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0361
https://www.cve.org/CVERecord?id=CVE-2023-0361
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-0687
https://www.cve.org/CVERecord?id=CVE-2023-0687
Référence CVE CVE-2023-1077
https://www.cve.org/CVERecord?id=CVE-2023-1077
Référence CVE CVE-2023-1206
https://www.cve.org/CVERecord?id=CVE-2023-1206
Ré
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0801Multiples vulnérabilités dans les produits IBMDe multiples vulnérabilités ont été découvertes dans les produits IBM . Elles permettent à un attaquant
de provoquer un déni de service à distance et une atteinte à la
confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0526Multiples vulnérabilités dans les produits Siemensecord?id=CVE-2022-29562
Référence CVE CVE-2022-30767
https://www.cve.org/CVERecord?id=CVE-2022-30767
Référence CVE CVE-2022-31810
https://www.cve.org/CVERecord?id=CVE-2022-31810
Référence CVE CVE-2022-32207
https://www.cve.org/CVERecord?id=CVE-2022-32207
Référence CVE CVE-2022-36946
https://www.cve.org/CVERecord?id=CVE-2022-36946
Référence CVE CVE-2022-37434
https://www.cve.org/CVERecord?id=CVE-2022-37434
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-48285
https://www.cve.org/CVERecord?id=CVE-2022-48285
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-29130
https://www.cve.org/CVERecord?id=CVE-2023-29130
Référence CVE CVE-2023-29131
https://www.cve.org/CVERecord?id=CVE-2023-29131
Référence CVE CVE-2023-35920
https://www.cve.org/CVERecord?id=CVE-2023-35920
Référence CVE CVE-2023-35921
https://www.cve.org/CVERecord?id=CVE-2023-35921
Référence CVE CVE-2023-36386
https://www.cve.org/CVERecord?id=CVE-2023-36386
Référence CVE CVE-2023-36389
https://www.cve.org/CVERecord?id=CVE-2023-36389
Référence CVE CVE-2023-36390
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0484Multiples vulnérabilités dans les produits IBMRecord?id=CVE-2022-4304
Référence CVE CVE-2022-43551
https://www.cve.org/CVERecord?id=CVE-2022-43551
Référence CVE CVE-2022-43552
https://www.cve.org/CVERecord?id=CVE-2022-43552
Référence CVE CVE-2022-4378
https://www.cve.org/CVERecord?id=CVE-2022-4378
Référence CVE CVE-2022-43927
https://www.cve.org/CVERecord?id=CVE-2022-43927
Référence CVE CVE-2022-43929
https://www.cve.org/CVERecord?id=CVE-2022-43929
Référence CVE CVE-2022-43930
https://www.cve.org/CVERecord?id=CVE-2022-43930
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-45061
https://www.cve.org/CVERecord?id=CVE-2022-45061
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0266
https://www.cve.org/CVERecord?id=CVE-2023-0266
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0386
https://www.cve.org/CVERecord?id=CVE-2023-0386
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-23914
https://www.cve.org/CVERecord?id=CVE-2023-23914
Référence CVE CVE-2023-23915
https://www.cve.org/CVERecord?id=CVE-2023-23915
Référence CVE CVE-2023-23916
https://www.cve.org/CVERecord?id=CVE-2023-23916
Référence CVE CVE-2023-23934
https://www.cve.org/CVERecord?id=CVE-2023-
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0453Multiples vulnérabilités dans les produits SiemensCVERecord?id=CVE-2022-43750
Référence CVE CVE-2022-4378
https://www.cve.org/CVERecord?id=CVE-2022-4378
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-4662
https://www.cve.org/CVERecord?id=CVE-2022-4662
Référence CVE CVE-2022-47518
https://www.cve.org/CVERecord?id=CVE-2022-47518
Référence CVE CVE-2022-47520
https://www.cve.org/CVERecord?id=CVE-2022-47520
Référence CVE CVE-2022-47929
https://www.cve.org/CVERecord?id=CVE-2022-47929
Référence CVE CVE-2022-47946
https://www.cve.org/CVERecord?id=CVE-2022-47946
Référence CVE CVE-2023-0179
https://www.cve.org/CVERecord?id=CVE-2023-0179
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0394
https://www.cve.org/CVERecord?id=CVE-2023-0394
Référence CVE CVE-2023-0464
https://www.cve.org/CVERecord?id=CVE-2023-0464
Référence CVE CVE-2023-0465
https://www.cve.org/CVERecord?id=CVE-2023-0465
Référence CVE CVE-2023-0466
https://www.cve.org/CVERecord?id=CVE-2023-0466
Référence CVE CVE-2023-0590
https://www.cve.org/CVERecord?id=CVE-2023-0590
Référence CVE CVE-2023-1073
https://www.cve.org/CVERecord?id=CVE-2023-1073
Référence CVE CVE-2023-1077
https://www.cve.org/CVERecord?id=CVE-2023-1077
Ré
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0444Multiples vulnérabilités dans les produits IBMERecord?id=CVE-2022-41854
Référence CVE CVE-2022-41881
https://www.cve.org/CVERecord?id=CVE-2022-41881
Référence CVE CVE-2022-41915
https://www.cve.org/CVERecord?id=CVE-2022-41915
Référence CVE CVE-2022-42003
https://www.cve.org/CVERecord?id=CVE-2022-42003
Référence CVE CVE-2022-42004
https://www.cve.org/CVERecord?id=CVE-2022-42004
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2022-46175
https://www.cve.org/CVERecord?id=CVE-2022-46175
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-23916
https://www.cve.org/CVERecord?id=CVE-2023-23916
Référence CVE CVE-2023-24998
https://www.cve.org/CVERecord?id=CVE-2023-24998
Référence CVE CVE-2023-25930
https://www.cve.org/CVERecord?id=CVE-2023-25930
Référence CVE CVE-2023-26021
https://www.cve.org/CVERecord?id=CVE-2023-
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0428Multiples vulnérabilités dans les produits Splunkcord?id=CVE-2022-4200
Référence CVE CVE-2022-42004
https://www.cve.org/CVERecord?id=CVE-2022-42004
Référence CVE CVE-2022-42915
https://www.cve.org/CVERecord?id=CVE-2022-42915
Référence CVE CVE-2022-42916
https://www.cve.org/CVERecord?id=CVE-2022-42916
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43551
https://www.cve.org/CVERecord?id=CVE-2022-43551
Référence CVE CVE-2022-43552
https://www.cve.org/CVERecord?id=CVE-2022-43552
Référence CVE CVE-2022-43680
https://www.cve.org/CVERecord?id=CVE-2022-43680
Référence CVE CVE-2022-46175
https://www.cve.org/CVERecord?id=CVE-2022-46175
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-1370
https://www.cve.org/CVERecord?id=CVE-2023-1370
Référence CVE CVE-2023-23914
https://www.cve.org/CVERecord?id=CVE-2023-23914
Référence CVE CVE-2023-23915
https://www.cve.org/CVERecord?id=CVE-2023-23915
Référence CVE CVE-2023-23916
https://www.cve.org/CVERecord?id=CVE-2023-23916
Référence CVE CVE-2023-27533
https://www.cve.org/CVERecord?id=CVE-2023-27533
Référence CVE CVE-2023-27534
https://www.cve.org/CVERecord?id=CVE-2023-27534
Référence CVE CVE-2023-27535
https://www.cve.org/CVERecord?id=CVE-2
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0368Multiples vulnérabilités dans Nessus Network MonitorERecord?id=CVE-2022-23990
Référence CVE CVE-2022-25235
https://www.cve.org/CVERecord?id=CVE-2022-25235
Référence CVE CVE-2022-25236
https://www.cve.org/CVERecord?id=CVE-2022-25236
Référence CVE CVE-2022-25314
https://www.cve.org/CVERecord?id=CVE-2022-25314
Référence CVE CVE-2022-25315
https://www.cve.org/CVERecord?id=CVE-2022-25315
Référence CVE CVE-2022-40674
https://www.cve.org/CVERecord?id=CVE-2022-40674
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Gestion détaillée du document
le 10 mai 2023
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de la Défense et de la Sécurité Nationale / Agence nationale de la
sécurité des systèmes d
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0325Multiples vulnérabilités dans les produits Oracled?id=CVE-2022-40152
Référence CVE CVE-2022-41881
https://www.cve.org/CVERecord?id=CVE-2022-41881
Référence CVE CVE-2022-42916
https://www.cve.org/CVERecord?id=CVE-2022-42916
Référence CVE CVE-2022-43548
https://www.cve.org/CVERecord?id=CVE-2022-43548
Référence CVE CVE-2022-43551
https://www.cve.org/CVERecord?id=CVE-2022-43551
Référence CVE CVE-2022-45047
https://www.cve.org/CVERecord?id=CVE-2022-45047
Référence CVE CVE-2022-45061
https://www.cve.org/CVERecord?id=CVE-2022-45061
Référence CVE CVE-2022-45143
https://www.cve.org/CVERecord?id=CVE-2022-45143
Référence CVE CVE-2022-45685
https://www.cve.org/CVERecord?id=CVE-2022-45685
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-21896
https://www.cve.org/CVERecord?id=CVE-2023-21896
Référence CVE CVE-2023-21911
https://www.cve.org/CVERecord?id=CVE-2023-21911
Référence CVE CVE-2023-21912
https://www.cve.org/CVERecord?id=CVE-2023-21912
Référence CVE CVE-2023-21913
https://www.cve.org/CVERecord?id=CVE-2023-21913
Référence CVE CVE-2023-21916
https://www.cve.org/CVERecord?id=CVE-2023-21916
Référence CVE CVE-2023-21917
https://www.cve.org/CVERecord?id=CVE-2023-21917
Référence CVE CVE-2023-21918
https://www.cve.org/CVERecord?id=CVE-2023-21918
Référence CVE CVE-2023-21919
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0271Multiples vulnérabilités dans les produits QnapDe multiples vulnérabilités ont été découvertes dans les produits Qnap . Elles permettent à un attaquant de provoquer
une exécution de code arbitraire à distance, une atteinte à la
confidentialité des données et un contournement de la politique de
sécurité.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0258Multiples vulnérabilités dans les produits IBMCVERecord?id=CVE-2022-41717
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4269
https://www.cve.org/CVERecord?id=CVE-2022-4269
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43548
https://www.cve.org/CVERecord?id=CVE-2022-43548
Référence CVE CVE-2022-43551
https://www.cve.org/CVERecord?id=CVE-2022-43551
Référence CVE CVE-2022-43552
https://www.cve.org/CVERecord?id=CVE-2022-43552
Référence CVE CVE-2022-43945
https://www.cve.org/CVERecord?id=CVE-2022-43945
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-22809
https://www.cve.org/CVERecord?id=CVE-2023-22809
Référence CVE CVE-2023-23914
https://www.cve.org/CVERecord?id=CVE-2023-23914
Référence CVE CVE-2023-23915
https://www.cve.org/CVERecord?id=CVE-2023-23915
Référence CVE CVE-2023-23916
https://www.cve.org/CVERecord?id=CVE-2023-
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0245Multiples vulnérabilités dans les produits IBMDe multiples vulnérabilités ont été corrigées dans les produits IBM . Certaines d'entre elles permettent à un
attaquant de provoquer un problème de sécurité non spécifié par
l'éditeur, un déni de service à distance et une atteinte à l'intégrité
des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0239Multiples vulnérabilités dans Tenable Sensor ProxyDe multiples vulnérabilités ont été découvertes dans Tenable Sensor Proxy . Elles permettent à un
attaquant de provoquer un déni de service à distance et une atteinte à
la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0220Multiples vulnérabilités dans les produits Siemensecord?id=CVE-2022-32296
Référence CVE CVE-2022-32981
https://www.cve.org/CVERecord?id=CVE-2022-32981
Référence CVE CVE-2022-33981
https://www.cve.org/CVERecord?id=CVE-2022-33981
Référence CVE CVE-2022-35252
https://www.cve.org/CVERecord?id=CVE-2022-35252
Référence CVE CVE-2022-36879
https://www.cve.org/CVERecord?id=CVE-2022-36879
Référence CVE CVE-2022-36946
https://www.cve.org/CVERecord?id=CVE-2022-36946
Référence CVE CVE-2022-38767
https://www.cve.org/CVERecord?id=CVE-2022-38767
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-25957
https://www.cve.org/CVERecord?id=CVE-2023-25957
Référence CVE CVE-2023-27309
https://www.cve.org/CVERecord?id=CVE-2023-27309
Référence CVE CVE-2023-27310
https://www.cve.org/CVERecord?id=CVE-2023-27310
Référence CVE CVE-2023-27462
https://www.cve.org/CVERecord?id=CVE-2023-27462
Référence CVE CVE-2023-27463
https://www.cve.org/CVERecord?id=CVE-2023-27463
Gestion détaillée du document
le 14 mars 2023
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À pro
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0214Multiples vulnérabilités dans les produits IBMCVERecord?id=CVE-2021-43138
Référence CVE CVE-2022-0391
https://www.cve.org/CVERecord?id=CVE-2022-0391
Référence CVE CVE-2022-24758
https://www.cve.org/CVERecord?id=CVE-2022-24758
Référence CVE CVE-2022-25881
https://www.cve.org/CVERecord?id=CVE-2022-25881
Référence CVE CVE-2022-34339
https://www.cve.org/CVERecord?id=CVE-2022-34339
Référence CVE CVE-2022-4203
https://www.cve.org/CVERecord?id=CVE-2022-4203
Référence CVE CVE-2022-4304
https://www.cve.org/CVERecord?id=CVE-2022-4304
Référence CVE CVE-2022-43879
https://www.cve.org/CVERecord?id=CVE-2022-43879
Référence CVE CVE-2022-4450
https://www.cve.org/CVERecord?id=CVE-2022-4450
Référence CVE CVE-2023-0215
https://www.cve.org/CVERecord?id=CVE-2023-0215
Référence CVE CVE-2023-0216
https://www.cve.org/CVERecord?id=CVE-2023-0216
Référence CVE CVE-2023-0217
https://www.cve.org/CVERecord?id=CVE-2023-0217
Référence CVE CVE-2023-0286
https://www.cve.org/CVERecord?id=CVE-2023-0286
Référence CVE CVE-2023-0401
https://www.cve.org/CVERecord?id=CVE-2023-0401
Référence CVE CVE-2023-23914
https://www.cve.org/CVERecord?id=CVE-2023-23914
Référence CVE CVE-2023-23915
https://www.cve.org/CVERecord?id=CVE-2023-23915
Référence CVE CVE-2023-23916
https://www.cve.org/CVERecord?id=CVE-2023-23916
Gestion détaillée du document
le 13 mars 2023
Version initiale
Alertes
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0208Multiples vulnérabilités dans NessusDe multiples vulnérabilités ont été découvertes dans les produits Tenable . Elles permettent à un attaquant de
provoquer une exécution de code arbitraire à distance, un déni de
service à distance et un contournement de la politique de sécurité.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0201Multiples vulnérabilités dans Tenable NessusDe multiples vulnérabilités ont été découvertes dans Tenable Nessus . Elles permettent à un attaquant de
provoquer une exécution de code arbitraire à distance, un déni de
service à distance et une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0190Multiples vulnérabilités dans Tenable NessusDe multiples vulnérabilités ont été découvertes dans Tenable Nessus.
Certaines d'entre elles permettent à un attaquant de provoquer un
problème de sécurité non spécifié par l'éditeur, une exécution de code
arbitraire à distance et un déni de service à distance.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0183Multiples vulnérabilités dans Tenable.scDe multiples vulnérabilités ont été découvertes dans Tenable.sc. Elles
permettent à un attaquant de provoquer un déni de service à distance et
une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0177Multiples vulnérabilités dans IBM SterlingDe multiples vulnérabilités ont été découvertes dans IBM Sterling. Elles
permettent à un attaquant de provoquer un déni de service à distance et
une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0169Multiples vulnérabilités dans Stormshield Management CenterDe multiples vulnérabilités ont été corrigées dans Stormshield
Management Center. Elles permettent à un attaquant de provoquer un déni
de service à distance et une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0102Multiples vulnérabilités dans OpenSSLDe multiples vulnérabilités ont été découvertes dans OpenSSL. Elles
permettent à un attaquant de provoquer un déni de service à distance,
une atteinte à l'intégrité des données et une atteinte à la
confidentialité des données.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2023-001221OpenSSL における解放済みメモリの使用に関する脆弱性OpenSSL には、BIO チェーンが適切にクリーンアップされず、呼び出し元によって渡された BIO が以前に解放されたフィルタ BIO への内部ポインタを保持するため、解放済みメモリの使用に関する脆弱性が存在します。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-5866OpenSSL 취약점 보안 업데이트 권고#### OpenSSL 취약점 보안 업데이트 권고 2023.02.09
##### □ 개요
o OpenSSL 프로젝트는 OpenSSL에서 발생하는 취약점을 해결한 보안 업데이트 발표
o 공격자는 해당 취약점을 악용하여 피해를 발생시킬 수 있으므로, 해당 제품을 사용하는 이용자들은 최신 버전으로 업데이트 권고
##### □ 설명 [1]
o OpenSSL에서 발생하는 Type Confusion 취약점 (CVE-2023-0286)
o OpenSSL의 RSA 복호화에서 Timing Oracle 인해 발생하는 Bleichenbacher 공격 취약점 (CVE-2022-4304)
o OpenSSL에서 버퍼 오버플로우로 인해 발생하는 서비스 거부 취약점 (CVE-2022-4203)
o OpenSSL에서 BIO_new_NDEF 함수 호출 시 발생하는 use-after-free 취약점 (CVE-2023-0215)
o OpenSSL에서 PEM_read_bio_ex 함수 호출 시 발생하는 double-free 취약점 (CVE-2022-4450)
o OpenSSL에서 d2i_PKCS7 함수 호출 시 발생하는 유효하지 않은 포인터 역참조 취약점 (CVE-2023-0216)
o OpenSSL에서 잘못된 형식의 DSA 공개키 유효성 검사 시 발생하는 널 포인터 역참조 취약점 (CVE-2023-0217)
o OpenSSL에서 PKCS7 서명 확인 시 발생하는 널 포인터 역참조 취약점 (CVE-2023-0401)
##### □ 영향을 받는 제품 및 해결 버전
제품명
취약점 (CVE-ID)
영향받는 버전
해결 버전
OpenSSL
CVE-2023-0286
CVE-2022-4304
CVE-2023-0215
3.0
3.0.8
1.1.1
1.1.1t
1.0.2
1.0.2zg
CVE-2022-4203
CVE-2023-0216
CVE-2023-0217
CVE-2023-0401
3.0.0 ~ 3.0.7
3.0.8
CVE-2022-4450
3.0
3.0.8
1.1.1
1.1.1t
※ 하단의 참고사이트를 확인하여 해결 버전으로 업데이트 수행 [2]
※ 버전 1.0.2zg 업그레이드 시 프리미엄 지원 고객만 해당
##### □ 기타 문의사항
o 한국인터넷진흥원 사이버민원센터: 국번없이
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0333Kwetsbaarheden verholpen in SAP productenEen kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Server Side Request Forgery (SSRF)
- Cross-Site Scripting (XSS)
- Omzeilen van authenticatie
- Omzeilen van beveiligingsmaatregel
- Manipulatie van gegevens
- Toegang tot gevoelige gegevens
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0246Kwetsbaarheden verholpen in Siemens productenDe kwetsbaarheden stellen een kwaadwillende mogelijk in staat aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipulatie van gegevens
- Omzeilen van beveiligingsmaatregel
- (Remote) code execution (Administrator/Root rechten)
- (Remote) code execution (Gebruikersrechten)
- Toegang tot systeemgegevens
- Verhoogde gebruikersrechten
De kwaadwillende heeft hiervoor toegang nodig tot de productieomgeving. Het is goed gebruik een dergelijke omgeving niet publiek toegankelijk te hebben.
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0239Kwetsbaarheden verholpen in Solarwinds PlatformEen kwaadwillende kan de kwetsbaarheden misbruiken om een Denial-of-Service te veroorzaken, een command-injection uit te voeren, of om een Cross-Site-Scripting-aanval uit te voeren. Een dergelijke aanval kan leiden tot uitvoer van willekeurige code in de browser van het slachtoffer.
Voor succesvol misbruik moet de kwaadwillende voorafgaande authenticatie hebben.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0061Kwetsbaarheden verholpen in Siemens productenDe kwetsbaarheden stellen een kwaadwillende mogelijk in staat aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Cross-Site-Scripting (XSS)
- Cross-Site Request Forgery (CSRF)
- Manipulatie van gegevens
- Omzeilen van een beveiligingsmaatregel
- Omzeilen van authenticatie
- (Remote) code execution (root/admin rechten)
- (Remote) code execution (Gebruikersrechten)
- Toegang tot systeemgegevens
- Toegang tot gevoelige gegevens
De kwaadwillende heeft hiervoor toegang nodig tot de productieomgeving. Het is goed gebruik een dergelijke omgeving niet publiek toegankelijk te hebben.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0051Kwetsbaarheden verholpen in Siemens productenDe kwetsbaarheden stellen een kwaadwillende mogelijk in staat aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Cross-Site-Scripting (XSS)
- Cross-Site Request Forgery (CSRF)
- Manipulatie van gegevens
- Omzeilen van een beveiligingsmaatregel
- Omzeilen van authenticatie
- (Remote) code execution (root/admin rechten)
- (Remote) code execution (Gebruikersrechten)
- Toegang tot systeemgegevens
- Toegang tot gevoelige gegevens
De kwaadwillende heeft hiervoor toegang nodig tot de productieomgeving. Het is goed gebruik een dergelijke omgeving niet publiek toegankelijk te hebben.
Official advisory ↗