Microsoft Releases Update for DoS Flaw in .NET Core

Enterprise Vulnerabilities
From DHS/US-CERT’s National Vulnerability Database CVE-2020-4051
PUBLISHED: 2020-06-15

In Dijit before versions 1.11.11, and greater than or equal to 1.12.0 and less than 1.12.9, and greater than or equal to 1.13.0 and less than 1.13.8, and greater than or equal to 1.14.0 and less than 1.14.7, and greater than or equal to 1.15.0 and less than 1.15.4, and greater than or equal to 1.16….

CVE-2020-14163
PUBLISHED: 2020-06-15

An issue was discovered in ecma/operations/ecma-container-object.c in JerryScript 2.2.0. Operations with key/value pairs did not consider the case where garbage collection is triggered after the key operation but before the value operation, as demonstrated by improper read access to memory in ecma_g…

CVE-2020-5358
PUBLISHED: 2020-06-15

Dell Encryption versions prior to 10.7 and Dell Endpoint Security Suite versions prior to 2.7 contain a privilege escalation vulnerability due to incorrect permissions. A local malicious user with low privileges could potentially exploit this vulnerability to gain elevated privilege on the affected …

CVE-2020-11969
PUBLISHED: 2020-06-15

If Apache TomEE is configured to use the embedded ActiveMQ broker, and the broker URI includes the useJMX=true parameter, a JMX port is opened on TCP port 1099, which does not include authentication. This affects Apache TomEE 8.0.0-M1 – 8.0.1, Apache TomEE 7.1.0 – 7.1.2, Apache TomEE 7.0.0-M1 – 7.0….

CVE-2020-11999
PUBLISHED: 2020-06-15

FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx CommDTM: Version 1 and l…

Read More HERE

Leave a Reply