New vulnerabilities threaten another Solar Winds-style security disaster

0

Eight new vulnerabilities were recently discovered in the Open Automation Software (OAS) platform which, if leveraged, could have triggered another supply chain security disaster.

According to Talos, Cisco’s cybersecurity arm, the flaws include two high-severity vulnerabilities – CVE-2022-26833 (severity score 9.4) and CVE-2022-26082 (severity score 9.1) – which could enable threat actors to change the configuration of the platform to create new security groups and run arbitrary code.

FOLLOW US ON GOOGLE NEWS

 

Read original article here

Denial of responsibility! TechnoCodex is an automatic aggregator of the all world’s media. In each content, the hyperlink to the primary source is specified. All trademarks belong to their rightful owners, all materials to their authors. If you are the owner of the content and do not want us to publish your materials, please contact us by email – [email protected]. The content will be deleted within 24 hours.

Leave a comment