You are here

Cybersecurity

F5 Releases Security Advisory for BIG-IP TMUI RCE Vulnerability, CVE-2020-5902

F5 has released a security advisory to address a remote code execution (RCE) vulnerability – CVE-2020-5902 – in the BIG-IP Traffic Management User Interface (TMUI). An attacker could exploit this vulnerability to take control of an affected system. CISA encourages users and administrators to review the F5 advisory for CVE-2020-5902 and upgrade to the appropriate version.

Nortek Linear eMerge 50P/5000P (ICSA-20-184-01)

CISA has published an advisory on path traversal, command injection, unrestricted upload of file with dangerous type, cross-site request forgery, and improper authentication vulnerabilities in Nortek Linear eMerge 50P/5000P. Versions 4.6.07 (revision 79330) and prior are affected. Successful exploitation of these vulnerabilities could allow a remote attacker to gain full system access. Nortek has released v32-09a to address the vulnerabilities. CISA also recommends a series of measures to mitigate the vulnerabilities.

ABB Systems 800xA Information Manager (ICSA-20-184-02) – Product Used in the Water and Wastewater and Energy Sectors

CISA has published an advisory on a cross-site scripting vulnerability in ABB System 800xA Information Manager. Versions prior to 5.1 Rev E/5.1 FP4 Rev E TC6, 6.0.3.3 RU1, and 6.1 RU1 are affected. Successful exploitation of this vulnerability could allow an attacker to inject and execute arbitrary code on the information manager server. ABB has provided a list of recommended measures to mitigate the vulnerability. CISA also recommends a series of measures to mitigate the vulnerability.

Perpetual Password Pitfalls

While phishing for credentials is a top cyber attack vector, many threat actors do not need to rely on phishing because password guessing is so easy. Threat intelligence firm Flashpoint took a deep dive into its collection of over 35 billion compromised credentials and unsurprisingly discovered a primary parallel: people are predictable.

After slicing and dicing the top 10,000 bad passwords, Flashpoint observed:

CISA Alert: Defending against Malicious Cyber Activity Originating from Tor

The U.S. Department of Homeland Security Cybersecurity and Infrastructure Security Agency (CISA) has published a new alert highlighting risks associated with Tor, along with technical details and recommendations for mitigation. Tor (aka The Onion Router) is software that allows users to browse the web anonymously by encrypting and routing requests through multiple relay layers or nodes.

Mitsubishi Electric Factory Automation Engineering Software Products (ICSA-20-182-02)

CISA has published an advisory on an improper restriction of XML external entity reference and uncontrolled resource consumption vulnerability in Mitsubishi Electric Factory Automation Engineering Software Products. Numerous versions of this product are affected. Successful exploitation of these vulnerabilities could allow a local attacker to send files outside of the system as well as cause a denial-of-service condition. Mitsubishi Electric recommends affected users download the latest version of each software product and update it.

Pages

Subscribe to Cybersecurity