Security Advisories

Cisco SD-WAN vManage Unauthenticated REST API Access Vulnerability (CVE-2023-20214)
Published On: Mar 13, 2024 (8 months ago)
Reference No: TZCERT/SA/2024/03/13-01
Overview:
Cisco SD-WAN vManage is affected with an authentication vulnerability...
Read more
CVE-2024-21762 Vulnerability Scanner for FortiGate Firewalls
Published On: Mar 07, 2024 (8 months ago)
Reference No: TZCERT/SA/2024/03/07
Overview:
The flaw is in a network’s security system, potentially allowing unaut...
Read more
Critical Security Issues in TeamCity On-Premises (CVE-2024-27198 and CVE-2024-27199)
Published On: Mar 07, 2024 (8 months ago)
Reference No: TZCERT/SA/2024/03/06
Overview:
CVE-2024-27198 (CVSS base score of 9.8 - Critical): is an authenticati...
Read more
XSS vulnerability in the LiteSpeed Cache plugin for WordPress (CVE-2023-40000)
Published On: Feb 29, 2024 (8 months ago)
Reference No: TZCERT/SA/2024/02/29
Overview:
Advisory No: TZCERT/SA/2024/02/29 Date of First Release: 28th Febru...
Read more
Critical Vulnerability in WordPress Bricks Plug-in (CVE-2024-25600)
Published On: Feb 22, 2024 (8 months ago)
Reference No: TZCERT/SA/2024/02/22
Overview:
CVE-2024-25600 (CVSS score of 9.8) is due to an eval function call in...
Read more
Revolution Slider Plugin Remote Code Execution (CVE-2023-2359)
Published On: Feb 15, 2024 (9 months ago)
Reference No: TZCERT/SA/2024/02/15
Overview:
CVE-2024-20253 is resulting from the improper processing of user-provi...
Read more
Microsoft Exchange Server Elevation of Privilege Vulnerability (CVE-2024-21410)
Published On: Feb 15, 2024 (9 months ago)
Reference No: TZCERT/SA/2024/02/15
Overview:
The vulnerability (CVE-2024-21410, CVSS score: 9.8) results in NTLM cr...
Read more
IBM Sterling Control Center vulnerable to denial of service due to Spring Boot and remote code execution due to Spring Framework (CVE-2023-20883 and CVE-2016-1000027)
Published On: Feb 08, 2024 (9 months ago)
Reference No: TZCERT/SA/2024/02/08-2
Overview:
The vulnerabilities with CVEID CVE-2016-1000027 and CVE-2023-20883 res...
Read more
Cisco Expressway Series Cross-Site Request Forgery Vulnerabilities (CVE-2024-20252, CVE-2024-20254 and CVE-2024-20255)
Published On: Feb 08, 2024 (9 months ago)
Reference No: TZCERT/SA/2024/02/08-1
Overview:
Following insufficient CSRF protection for the web-based management in...
Read more

Subscribe To TZ - CERT Newsletter

A digest of Tanzania Computer Emergency Response Team coverage of cyber-security news across the globe.

Subscribe
Report Incident