VMware Tanzu Spring Data Commons contained a remote code execution vulnerability actively exploited in ransomware attacks, impacting DIB organizations using...
AFFECTS 16
Aconex for DefenseClarityFederal Managed Cloud ServicesFusion Cloud
+12
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 16 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#ransomware#rce#exploited-in-wild
Adobe Flash Player, now defunct, contained a critical, actively exploited remote code execution vulnerability, leaving systems perpetually exposed to attack.
AFFECTS 14
Adobe Acrobat Sign for GovernmentAdobe AnalyticsAdobe CampaignAdobe Connect Managed Services (ACMS-GC)
+10
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 14 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#ransomware#rce#exploited-in-wild
A critical, actively exploited Java vulnerability allows remote code execution, impacting systems using outdated Java SE Runtime Environments (JRE).
AFFECTS 10
Aconex for DefenseFederal Managed Cloud ServicesFusion CloudGovernment Cloud - Common Controls
+6
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 10 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#ransomware#rce#exploited-in-wild#unpatched
Oracle VirtualBox's VBoxDrv.sys driver had an input validation flaw allowing local arbitrary code execution.
AFFECTS 10
Aconex for DefenseFederal Managed Cloud ServicesFusion CloudGovernment Cloud - Common Controls
+6
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 10 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#rce#exploited-in-wild#unpatched
Oracle Java SE JRE had an access control flaw in the Rhino Script Engine allowing remote arbitrary code execution.
AFFECTS 10
Aconex for DefenseFederal Managed Cloud ServicesFusion CloudGovernment Cloud - Common Controls
+6
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 10 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#rce#exploited-in-wild#unpatched#ransomware
Oracle Fusion Middleware's WebCenter Forms Recognition component suffered an unspecified vulnerability allowing remote attackers to compromise...
AFFECTS 10
Aconex for DefenseFederal Managed Cloud ServicesFusion CloudGovernment Cloud - Common Controls
+6
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 10 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#ransomware#exploited-in-wild#unpatched
An unspecified vulnerability in Oracle's Java Runtime Environment (JRE) was actively exploited in the wild, affecting confidentiality, integrity, and availability.
AFFECTS 10
Aconex for DefenseFederal Managed Cloud ServicesFusion CloudGovernment Cloud - Common Controls
+6
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 10 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#exploited-in-wild#unpatched
Oracle Java SE's Concurrency component had a remotely exploitable arbitrary code execution vulnerability, actively targeted by ransomware actors,...
AFFECTS 10
Aconex for DefenseFederal Managed Cloud ServicesFusion CloudGovernment Cloud - Common Controls
+6
▸ BLUE TEAM
Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Confirm which of your 10 affected products are internet-exposed and in CUI scope — CISA KEV, so remediate ahead of your normal cycle.
#ransomware#rce#exploited-in-wild#unpatched