ENISA EUVD · EUVD-2024-41509Official EUVD mapping0 linked advisory records.
Official EUVD recordBSI · German · WID-SEC-W-2024-3692Apple macOS: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu erzeugen, Sicherheitsmaßnahmen zu umgehen oder einen Man-in-the-Middle-Angriff durchzuführen.
Official advisoryBSI · German · WID-SEC-W-2024-3691Apple iOS und iPadOS: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Apple iOS und Apple iPadOS ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen oder einen Denial-of-Service-Zustand zu erzeugen.
Official advisoryBSI · German · WID-SEC-W-2024-1951expat: Mehrere Schwachstellen ermöglichen Denial of ServiceEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in expat ausnutzen, um einen Denial of Service Angriff durchzuführen.
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0218Multiples vulnérabilités dans les produits VMwarecord?id=CVE-2024-3651
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-37407
https://www.cve.org/CVERecord?id=CVE-2024-37407
Référence CVE CVE-2024-37891
https://www.cve.org/CVERecord?id=CVE-2024-37891
Référence CVE CVE-2024-38816
https://www.cve.org/CVERecord?id=CVE-2024-38816
Référence CVE CVE-2024-38819
https://www.cve.org/CVERecord?id=CVE-2024-38819
Référence CVE CVE-2024-38828
https://www.cve.org/CVERecord?id=CVE-2024-38828
Référence CVE CVE-2024-4032
https://www.cve.org/CVERecord?id=CVE-2024-4032
Référence CVE CVE-2024-45337
https://www.cve.org/CVERecord?id=CVE-2024-45337
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-4603
https://www.cve.org/CVERecord?id=CVE-2024-4603
Référence CVE CVE-2024-4741
https://www.cve.org/CVERecord?id=CVE-2024-4741
Référence CVE CVE-2024-47535
https://www.cve.org/CVERecord?id=CVE-2024-47535
Référence CVE CVE-2024-47611
https://www.cve.org/CVERecord?id=CVE-2024-47611
Référence CVE CVE-2024-48615
https://www.cve.org/CVERecord?id=CVE-2024-48615
Référence CVE CVE-2024-50602
https://www.cve.org/CVERecord?id=CVE-
Official advisoryCERT-FR · French · CERTFR-2025-AVI-1057Multiples vulnérabilités dans les produits VMwared?id=CVE-2024-45013
Référence CVE CVE-2024-45017
https://www.cve.org/CVERecord?id=CVE-2024-45017
Référence CVE CVE-2024-45019
https://www.cve.org/CVERecord?id=CVE-2024-45019
Référence CVE CVE-2024-45020
https://www.cve.org/CVERecord?id=CVE-2024-45020
Référence CVE CVE-2024-45022
https://www.cve.org/CVERecord?id=CVE-2024-45022
Référence CVE CVE-2024-45027
https://www.cve.org/CVERecord?id=CVE-2024-45027
Référence CVE CVE-2024-45029
https://www.cve.org/CVERecord?id=CVE-2024-45029
Référence CVE CVE-2024-45336
https://www.cve.org/CVERecord?id=CVE-2024-45336
Référence CVE CVE-2024-45341
https://www.cve.org/CVERecord?id=CVE-2024-45341
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-4603
https://www.cve.org/CVERecord?id=CVE-2024-4603
Référence CVE CVE-2024-46672
https://www.cve.org/CVERecord?id=CVE-2024-46672
Référence CVE CVE-2024-46692
https://www.cve.org/CVERecord?id=CVE-2024-46692
Référence CVE CVE-2024-46697
https://www.cve.org/CVERecord?id=CVE-2024-46697
Référence CVE CVE-2024-46698
https://www.cve.org/CVERecord?id=CVE-2024-46698
Référence CVE CVE-2024-46706
https://www.cve.org/CVERecord?id=CV
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0969Multiples vulnérabilités dans les produits VMwared?id=CVE-2024-43374
Référence CVE CVE-2024-43398
https://www.cve.org/CVERecord?id=CVE-2024-43398
Référence CVE CVE-2024-43788
https://www.cve.org/CVERecord?id=CVE-2024-43788
Référence CVE CVE-2024-43790
https://www.cve.org/CVERecord?id=CVE-2024-43790
Référence CVE CVE-2024-43802
https://www.cve.org/CVERecord?id=CVE-2024-43802
Référence CVE CVE-2024-44939
https://www.cve.org/CVERecord?id=CVE-2024-44939
Référence CVE CVE-2024-45336
https://www.cve.org/CVERecord?id=CVE-2024-45336
Référence CVE CVE-2024-45337
https://www.cve.org/CVERecord?id=CVE-2024-45337
Référence CVE CVE-2024-45341
https://www.cve.org/CVERecord?id=CVE-2024-45341
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-45720
https://www.cve.org/CVERecord?id=CVE-2024-45720
Référence CVE CVE-2024-45993
https://www.cve.org/CVERecord?id=CVE-2024-45993
Référence CVE CVE-2024-4603
https://www.cve.org/CVERecord?id=CVE-2024-4603
Référence CVE CVE-2024-46901
https://www.cve.org/CVERecord?id=CVE-2024-46901
Référence CVE CVE-2024-47081
https://www.cve.org/CVERecord?id=CVE-2024-47081
Référence CVE CVE-2024-4741
https://www.cve.org/CVERecord?id=CVE
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0864Multiples vulnérabilités dans VMware Tanzuecord?id=CVE-2024-34155
Référence CVE CVE-2024-34156
https://www.cve.org/CVERecord?id=CVE-2024-34156
Référence CVE CVE-2024-34158
https://www.cve.org/CVERecord?id=CVE-2024-34158
Référence CVE CVE-2024-3596
https://www.cve.org/CVERecord?id=CVE-2024-3596
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-4032
https://www.cve.org/CVERecord?id=CVE-2024-4032
Référence CVE CVE-2024-45336
https://www.cve.org/CVERecord?id=CVE-2024-45336
Référence CVE CVE-2024-45341
https://www.cve.org/CVERecord?id=CVE-2024-45341
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-4603
https://www.cve.org/CVERecord?id=CVE-2024-4603
Référence CVE CVE-2024-4741
https://www.cve.org/CVERecord?id=CVE-2024-4741
Référence CVE CVE-2024-50602
https://www.cve.org/CVERecord?id=CVE-2024-50602
Référence CVE CVE-2024-5535
https://www.cve.org/CVERecord?id=CVE-2024-5535
Référence CVE CVE-2024-5642
https://www.cve.org/CVERecord?id=CVE-2024-5642
Référence CVE CVE-2024-6119
https://www.cve.org/CVERecord?id=CVE-2024-
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0760Multiples vulnérabilités dans les produits IBMcord?id=CVE-2024-0985
Référence CVE CVE-2024-11831
https://www.cve.org/CVERecord?id=CVE-2024-11831
Référence CVE CVE-2024-12133
https://www.cve.org/CVERecord?id=CVE-2024-12133
Référence CVE CVE-2024-12243
https://www.cve.org/CVERecord?id=CVE-2024-12243
Référence CVE CVE-2024-12718
https://www.cve.org/CVERecord?id=CVE-2024-12718
Référence CVE CVE-2024-36114
https://www.cve.org/CVERecord?id=CVE-2024-36114
Référence CVE CVE-2024-4067
https://www.cve.org/CVERecord?id=CVE-2024-4067
Référence CVE CVE-2024-43799
https://www.cve.org/CVERecord?id=CVE-2024-43799
Référence CVE CVE-2024-43800
https://www.cve.org/CVERecord?id=CVE-2024-43800
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-45813
https://www.cve.org/CVERecord?id=CVE-2024-45813
Référence CVE CVE-2024-48948
https://www.cve.org/CVERecord?id=CVE-2024-48948
Référence CVE CVE-2024-48949
https://www.cve.org/CVERecord?id=CVE-2024-48949
Référence CVE CVE-2024-49766
https://www.cve.org/CVERecord?id=CVE-2024-49766
Référence CVE CVE-2024-49767
https://www.cve.org/CVERecord?id=CVE-2024-49767
Référence CVE CVE-2024-49828
https://www.cve.org/CVERecord?id=
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0651Multiples vulnérabilités dans les produits IBMord?id=CVE-2023-22081
Référence CVE CVE-2023-5676
https://www.cve.org/CVERecord?id=CVE-2023-5676
Référence CVE CVE-2024-21131
https://www.cve.org/CVERecord?id=CVE-2024-21131
Référence CVE CVE-2024-21138
https://www.cve.org/CVERecord?id=CVE-2024-21138
Référence CVE CVE-2024-21140
https://www.cve.org/CVERecord?id=CVE-2024-21140
Référence CVE CVE-2024-21144
https://www.cve.org/CVERecord?id=CVE-2024-21144
Référence CVE CVE-2024-21145
https://www.cve.org/CVERecord?id=CVE-2024-21145
Référence CVE CVE-2024-21147
https://www.cve.org/CVERecord?id=CVE-2024-21147
Référence CVE CVE-2024-27267
https://www.cve.org/CVERecord?id=CVE-2024-27267
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-47081
https://www.cve.org/CVERecord?id=CVE-2024-47081
Référence CVE CVE-2024-49342
https://www.cve.org/CVERecord?id=CVE-2024-49342
Référence CVE CVE-2024-49343
https://www.cve.org/CVERecord?id=CVE-2024-49343
Référence CVE CVE-2024-50602
https://www.cve.org/CVERecord?id=CVE-2024-50602
Référence CVE CVE-2025-0755
https://www.cve.org/CVERecord?id=CVE-2025-0755
Référence CVE CVE-2025-24970
https://www.cve.org/CVERecord?id=CV
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0492Multiples vulnérabilités dans les produits SiemensP+) (6GK5334-5TS01-4AR3) versions antérieures à V3.2
SIMATIC S7-1500 versions supérieures ou égales àV3.1.5 pour les vulnérabilités CVE-2021-41617, CVE-2023-4527, CVE-2023-4806, CVE-2023-4911, CVE-2023-5363, CVE-2023-6246, CVE-2023-6779, CVE-2023-6780, CVE-2023-28531, CVE-2023-38545, CVE-2023-38546, CVE-2023-44487, CVE-2023-46218, CVE-2023-46219, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2023-52927, CVE-2024-2961, CVE-2024-6119, CVE-2024-6387, CVE-2024-12133, CVE-2024-12243, CVE-2024-24855, CVE-2024-26596, CVE-2024-28085, CVE-2024-33599, CVE-2024-33600, CVE-2024-33601, CVE-2024-33602, CVE-2024-34397, CVE-2024-37370, CVE-2024-37371, CVE-2024-45490, CVE-2024-45491, CVE-2024-45492, CVE-2024-50246, CVE-2024-53166, CVE-2024-57977, CVE-2024-57996, CVE-2024-58005, CVE-2025-4373, CVE-2025-4598, CVE-2025-21701, CVE-2025-21702, CVE-2025-21712, CVE-2025-21724, CVE-2025-21728, CVE-2025-21745, CVE-2025-21756, CVE-2025-21758, CVE-2025-21765, CVE-2025-21766, CVE-2025-21767, CVE-2025-21795, CVE-2025-21796, CVE-2025-21848, CVE-2025-21862, CVE-2025-21864, CVE-2025-21865, CVE-2025-26465, CVE-2025-31115 et CVE-2025-46836.
Résumé
De multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à dist
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0086Multiples vulnérabilités dans les produits IBMord?id=CVE-2023-31315
Référence CVE CVE-2023-31356
https://www.cve.org/CVERecord?id=CVE-2023-31356
Référence CVE CVE-2024-10976
https://www.cve.org/CVERecord?id=CVE-2024-10976
Référence CVE CVE-2024-25062
https://www.cve.org/CVERecord?id=CVE-2024-25062
Référence CVE CVE-2024-30203
https://www.cve.org/CVERecord?id=CVE-2024-30203
Référence CVE CVE-2024-30205
https://www.cve.org/CVERecord?id=CVE-2024-30205
Référence CVE CVE-2024-32007
https://www.cve.org/CVERecord?id=CVE-2024-32007
Référence CVE CVE-2024-39331
https://www.cve.org/CVERecord?id=CVE-2024-39331
Référence CVE CVE-2024-4032
https://www.cve.org/CVERecord?id=CVE-2024-4032
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-5535
https://www.cve.org/CVERecord?id=CVE-2024-5535
Référence CVE CVE-2024-5742
https://www.cve.org/CVERecord?id=CVE-2024-5742
Référence CVE CVE-2024-6232
https://www.cve.org/CVERecord?id=CVE-2024-6232
Référence CVE CVE-2024-6923
https://www.cve.org/CVERecord?id=CVE-2024-6923
Référence CVE CVE-2024-7254
https://www.cve.org/CVERecord?id=CVE-2024-7254
Gestion détaillée du document
le 31 janvier 2025
Version initiale
Alerte
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0018Multiples vulnérabilités dans les produits Juniper Networksd?id=CVE-2024-41040
Référence CVE CVE-2024-41044
https://www.cve.org/CVERecord?id=CVE-2024-41044
Référence CVE CVE-2024-41055
https://www.cve.org/CVERecord?id=CVE-2024-41055
Référence CVE CVE-2024-41073
https://www.cve.org/CVERecord?id=CVE-2024-41073
Référence CVE CVE-2024-41096
https://www.cve.org/CVERecord?id=CVE-2024-41096
Référence CVE CVE-2024-42082
https://www.cve.org/CVERecord?id=CVE-2024-42082
Référence CVE CVE-2024-42096
https://www.cve.org/CVERecord?id=CVE-2024-42096
Référence CVE CVE-2024-42102
https://www.cve.org/CVERecord?id=CVE-2024-42102
Référence CVE CVE-2024-42131
https://www.cve.org/CVERecord?id=CVE-2024-42131
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-6119
https://www.cve.org/CVERecord?id=CVE-2024-6119
Référence CVE CVE-2024-6387
https://www.cve.org/CVERecord?id=CVE-2024-6387
Référence CVE CVE-2025-21592
https://www.cve.org/CVERecord?id=CVE-2025-21592
Référence CVE CVE-2025-21593
https://www.cve.org/CVERecord?id=CVE-2025-21593
Référence CVE CVE-2025-21596
https://www.cve.org/CVERecord?id=CVE-2025-21596
Référence CVE CVE-2025-21598
https://www.cve.org/CVERecord?id=CVE-
Official advisoryCERT-FR · French · CERTFR-2024-AVI-1072Multiples vulnérabilités dans les produits Appled?id=CVE-2024-44220
Référence CVE CVE-2024-44224
https://www.cve.org/CVERecord?id=CVE-2024-44224
Référence CVE CVE-2024-44225
https://www.cve.org/CVERecord?id=CVE-2024-44225
Référence CVE CVE-2024-44243
https://www.cve.org/CVERecord?id=CVE-2024-44243
Référence CVE CVE-2024-44245
https://www.cve.org/CVERecord?id=CVE-2024-44245
Référence CVE CVE-2024-44246
https://www.cve.org/CVERecord?id=CVE-2024-44246
Référence CVE CVE-2024-44248
https://www.cve.org/CVERecord?id=CVE-2024-44248
Référence CVE CVE-2024-44291
https://www.cve.org/CVERecord?id=CVE-2024-44291
Référence CVE CVE-2024-44300
https://www.cve.org/CVERecord?id=CVE-2024-44300
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-54465
https://www.cve.org/CVERecord?id=CVE-2024-54465
Référence CVE CVE-2024-54466
https://www.cve.org/CVERecord?id=CVE-2024-54466
Référence CVE CVE-2024-54474
https://www.cve.org/CVERecord?id=CVE-2024-54474
Référence CVE CVE-2024-54476
https://www.cve.org/CVERecord?id=CVE-2024-54476
Référence CVE CVE-2024-54477
https://www.cve.org/CVERecord?id=CVE-2024-54477
Référence CVE CVE-2024-54479
https://www.cve.org/CVERecord?id=CVE-2024-54479
Référence CVE CVE-2024-54484
https://www.cve.org/CVERecord?id=CVE-2024-54484
Référence CVE CVE-2024-54485
https://www.cve.org/CVERecord?id=
Official advisoryCERT-FR · French · CERTFR-2024-AVI-0958Multiples vulnérabilités dans les produits IBMd?id=CVE-2024-43796
Référence CVE CVE-2024-43799
https://www.cve.org/CVERecord?id=CVE-2024-43799
Référence CVE CVE-2024-43800
https://www.cve.org/CVERecord?id=CVE-2024-43800
Référence CVE CVE-2024-43824
https://www.cve.org/CVERecord?id=CVE-2024-43824
Référence CVE CVE-2024-43832
https://www.cve.org/CVERecord?id=CVE-2024-43832
Référence CVE CVE-2024-43833
https://www.cve.org/CVERecord?id=CVE-2024-43833
Référence CVE CVE-2024-43857
https://www.cve.org/CVERecord?id=CVE-2024-43857
Référence CVE CVE-2024-43858
https://www.cve.org/CVERecord?id=CVE-2024-43858
Référence CVE CVE-2024-45296
https://www.cve.org/CVERecord?id=CVE-2024-45296
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-45590
https://www.cve.org/CVERecord?id=CVE-2024-45590
Référence CVE CVE-2024-45801
https://www.cve.org/CVERecord?id=CVE-2024-45801
Référence CVE CVE-2024-46982
https://www.cve.org/CVERecord?id=CVE-2024-46982
Référence CVE CVE-2024-47764
https://www.cve.org/CVERecord?id=CVE-2024-47764
Référence CVE CVE-2024-47874
https://www.cve.org/CVERecord?id=CVE-2024-47874
Référence CVE CVE-2024-47875
https://www.cve.org/CVERecord?id=
Official advisoryNCSC-NL · Dutch · NCSC-2025-0020Kwetsbaarheden verholpen in Oracle Database productenDe kwetsbaarheden bevinden zich in verschillende componenten van de Oracle Database, waaronder de Data Mining component en de Java VM. Deze kwetsbaarheden stellen laaggeprivilegieerde geauthenticeerde gebruikers in staat om het systeem te compromitteren, wat kan leiden tot ongeautoriseerde toegang en gegevensmanipulatie. De Java VM-kwetsbaarheid kan ook leiden tot ongeautoriseerde wijzigingen van gegevens.
Official advisoryNCSC-NL · Dutch · NCSC-2025-0187Kwetsbaarheden verholpen in Siemens productenDe kwetsbaarheden stellen een kwaadwillende mogelijk in staat aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipulatie van gegevens
- Omzeilen van een beveiligingsmaatregel
- Omzeilen van authenticatie
- (Remote) code execution (root/admin rechten)
- (Remote) code execution (Gebruikersrechten)
- Toegang tot systeemgegevens
- Toegang tot gevoelige gegevens
- Spoofing
De kwaadwillende heeft hiervoor toegang nodig tot de productieomgeving. Het is goed gebruik een dergelijke omgeving niet publiek toegankelijk te hebben.
Official advisoryNCSC-NL · Dutch · NCSC-2025-0027Kwetsbaarheden verholpen in Oracle Fusion MiddlewareDe kwetsbaarheden bevinden zich in verschillende Oracle producten, waaronder Oracle WebLogic Server versies 12.2.1.4.0 en 14.1.1.0.0, die het mogelijk maken voor ongeauthenticeerde kwaadwillenden om toegang te krijgen tot kritieke gegevens. Dit kan leiden tot ernstige gevolgen voor de vertrouwelijkheid, integriteit en beschikbaarheid van de systemen. De kwetsbaarheid in Oracle HTTP Server versie 12.2.1.4.0 stelt kwaadwillenden in staat om ongeautoriseerde toegang te verkrijgen, met een CVSS-score van 5.3, terwijl de kwetsbaarheid in WebLogic Server een CVSS-score van 9.8 heeft, wat wijst op een kritieke impact. Kwaadwillenden kunnen ook gebruik maken van kwetsbaarheden in Oracle Fusion Middleware en andere producten om Denial-of-Service (DoS) aanvallen uit te voeren.
Official advisoryNCSC-NL · Dutch · NCSC-2025-0025Kwetsbaarheden verholpen in Oracle Financial ServicesDe kwetsbaarheden stellen ongeauthenticeerde aanvallers in staat om toegang te krijgen tot kritieke gegevens en de systeemintegriteit in gevaar te brengen. Specifieke kwetsbaarheden kunnen leiden tot compromittering van vertrouwelijkheid, integriteit en beschikbaarheid, met schadeclassificaties variërend van gemiddeld tot hoog. Sommige kwetsbaarheden kunnen op afstand worden uitgebuit zonder gebruikersinteractie, wat het risico op privilege-escalatie en denial-of-service vergroot.
Official advisoryNCSC-NL · Dutch · NCSC-2025-0021Kwetsbaarheden verholpen in Oracle CommunicationsDe kwetsbaarheden stellen ongeauthenticeerde kwaadwillenden in staat om Denial of Service (DoS) aanvallen uit te voeren of om ongeautoriseerde toegang tot gevoelige gegevens te verkrijgen. Specifieke versies, zoals 24.2.0 en 24.3.0 van de Cloud Native Core Network Function, zijn bijzonder kwetsbaar. Kwaadwillenden kunnen deze kwetsbaarheden misbruiken door speciaal geprepareerde HTTP-verzoeken te sturen naar het kwetsbare systeem.
Official advisoryNCSC-NL · Dutch · NCSC-2024-0488Kwetsbaarheden verholpen in macOSDe kwetsbaarheden omvatten onder andere een use-after-free kwetsbaarheid die kon leiden tot onverwachte applicatie-terminatie of willekeurige code-executie, en logica-issues die het mogelijk maakten dat applicaties beschermde delen van het bestandssysteem konden wijzigen. Daarnaast zijn er verbeteringen doorgevoerd in het geheugenbeheer om de stabiliteit en beveiliging van de systemen te waarborgen.
Official advisoryNCSC-NL · Dutch · NCSC-2024-0487Kwetsbaarheden verholpen in Apple iPadOS en iOSDe kwetsbaarheden omvatten onder andere een denial-of-service probleem, logica-issues die ongeautoriseerde privilege-escalatie mogelijk maakten, en onverwachte systeemterminaties door geheugen-corruptie. Deze kwetsbaarheden konden worden misbruikt door kwaadwillenden via het verwerken van kwaadwillig vervaardigde bestanden, webinhoud of afbeeldingen. De updates verbeteren de algehele stabiliteit en beveiliging van de systemen door verbeterde geheugenbeheertechnieken en validatiecontroles te implementeren.
Official advisoryNCSC-NL · Dutch · NCSC-2024-0411Kwetsbaarheden verholpen in Oracle Database productenEen kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipuleren van data
- Toegang tot gevoelige gegevens
Official advisory