A successful attacker could view sensitive information that even admins can’t access.
The vendor has issued a patch to close four holes in its flagship Backup & Replication suite; version 13 users are advised to audit their backup config files and closely monitor backup jobs.
An unauthenticated user can execute the attack, and there’s no mitigation, just a hotfix that should be applied immediately.
Attackers have already exploited the SNMP vulnerability to execute remote code or deny service.
Issue mainly affects PCs in virtual environments, prevents startup after May 2025 patches are applied.
Organization admits it ‘lost’ access to its signing key; an expert says this shows the need for object management by CISOs.
Admins need to change default credentials promptly on Juniper SSR, patch Cisco SLU, warns SANS Institute.
A feature that was supposed to harden the OS can by bypassed, say researchers.
PAN admins urged to block open internet access to firewall management interfaces after discovery of vulnerability.
Company says a 'small number' are affected, and admins seeing the issue should ask for the hotfix.