Attackers are eyeing known vulnerabilities in the Zimbra collaboration suite to target government and private sector organizations.
The flaws could lead to denial-of-service attacks, information disclosure, privilege escalation, and in some cases, code execution.
Weeks after the disclosure of the vulnerability (CVE-2022-29464) in WSO2 products, attackers are leveraging the flaw to install Linux-compatible Cobalt Strike beacons, cryptocurrency miners and more.
Cisco has patched a flaw in IOS XR that can allow an attacker to write arbitrary files to the Redis instance.
NVIDIA has released an update to fix a number of serious code-execution flaws in its GPU display driver that could be used to perform guest-to-host escapes.