888.624.6737

syse-blog-header

SECURITY ALERT: Multiple Fortinet Vulnerabilities | CVE-2024-23666 & CVE-2024-50176

November 14, 2024

Systems Engineering is aware of the Fortinet FortiOS, FortiManager, and FortiAnalyzer affecting multiple versions of these products.

Fortinet rates these vulnerabilities as HIGH.

Read More »

Security Bulletins & Alerts

SECURITY ALERT: FortiManager Vulnerability Actively Exploited as Zero-Day | CVE-2024-47575

October 24, 2024

Systems Engineering is aware of the Fortinet FortiManager missing authentication for critical function vulnerability in the fgfmd process, CVE-2024-47575. Reports have shown this vulnerability to be exploited in the wild.

Read More »

Security Bulletins & Alerts

SECURITY BULLETIN: DigiCert Certificate Revocation Incident - Potential Business Impact

July 31, 2024

Late yesterday, DigiCert announced a critical incident involving the revocation of a subset of TLS/SSL certificates due to a domain control verification (DCV) issue. While necessary to maintain security standards, this action could potentially disrupt services for some organizations that rely on DigiCert certificates to secure public and private web services.

Read More »

Security Bulletins & Alerts

SECURITY BULLETIN: Cisco Duo Authentication for Windows Logon and RDP Information Vulnerability (CVE-2024-20292)

May 07, 2024

Last October, Cisco announced a security vulnerability in their Duo Authentication for Windows Logon and RDP that impacted releases 4.0 through 4.2.  In April, Cisco delivered a new release and a fix for CVE-2024-20292.  

Read More »

Security Bulletins & Alerts

SECURITY ALERT: Multiple Cisco Security CVE's for the ASA Firewalls

April 29, 2024

Systems Engineering is aware of three Vulnerabilities affecting the Cisco ASA; Cisco Adaptive Security Appliance Web Service Denial of Service Vulnerability - CVE-2024-20353, Cisco Adaptive Security Appliance Command Injection Vulnerability - CVE-2024-20358, and Cisco Adaptive Security Appliance Persistent Local Code Execution Vulnerability - CVE-2024-20359.

Read More »

Security Bulletins & Alerts

SECURITY ALERT: FortiClient EMS - (CVE-2023-48788 & CVE-2023-47534)

March 15, 2024

Systems Engineering is aware of two vulnerabilities, the Fortinet FortiClient EMS Pervasive SQL injection in DAS component (CVE-2023-48788) and FortiClient EMS - CSV injection in the log download feature (CVE-2023-47534).

Read More »

Security Bulletins & Alerts

SECURITY ALERT: Cisco Expressway Series Cross-Site Request Forgery Vulnerabilities

February 09, 2024

Systems Engineering is aware of the group of Cisco Expressway Series Cross-Site Request Forgery Vulnerabilities, CVE: CVE-2024-20252.  

Read More »

Security Bulletins & Alerts