Log in to see all content. Some content is hidden to the public.
Can't find what you're looking for? Help us improve the search functionality by reporting the expected results.
3163 Results
Vulnerability in vm2 Project vm2 for Node.js
Synk has released security updates to address vulnerabilities in vm2 Project vm2 for Node.js. Exploiting this vulnerability leads to access to a host object and a sandbox compromise. For a complete description of the vulnerabilities and affected systems go to CVE-2022-25893 Detail. IT Security Read more about IT Security service offerings.
Vulnerability in VMware vRealize Log Insight
VMware has released security updates to address vulnerabilities in VMware Log Insight. A remote attacker could exploit these vulnerabilities to take control of an affected system.
Vulnerabilities in Samsung’s Galaxy Store
Samsung released security updates to address vulnerabilities in Samsung’s Galaxy Store. An attacker could exploit these vulnerabilities to perform remote code execution.
Vulnerabilities in Multiple Apple Products
Apple has released a security update to address vulnerabilities in multiple Apple Products. A remote attacker could exploit these vulnerabilities to take control of an affected device.
Critical Vulnerabilities in Dell Secure Connect Gateway (SCG) Policy Manager
Dell has released security updates to address Critical vulnerabilities in Dell Secure Connect Gateway (SCG) Policy Manager. An attacker could exploit these vulnerabilities to compromise the affected system.
Jan 2023: Compensation-Themed Phishing Lures Harvest Microsoft Credentials
Threat Alert: What to Watch For Cybercriminals have launched a series of phishing attacks using timely email phishing lures related to annual compensation reviews and bonuses. The phishing emails encourage recipients to click a lure to confirm a payment-related change.
Critical and High Vulnerabilities in the OpenText Enterprise Content Management System
OpenText released security updates to address Critical and High Vulnerabilities in the
Vulnerability in VMware vRealize Network
VMware has released security updates to address vulnerabilities in VMware vRealize Network. A malicious actor with network access to the vRNI REST API can execute commands without authentication.
High Vulnerability in Cisco Unified CM
Cisco released security updates to address a High vulnerability in the Cisco Unified CM. A remote attacker could exploit this vulnerability to read or modify any data on the underlying database or elevate their privileges.
Guideline
macOS Monterey and Older Versions Discontinued
What is Happening?macOS Monterey (12.x) and older versions are all discontinued and no longer supported by Apple, which also ended security updates and maintenance. This means these older macOS versions no longer meet UCSF's minimum security standards.It is a minimum security standard of UCSF that all computers used for UCSF business must run vendor-supported versions of operating systems to avoid security risks. Computers that no longer meet this security requirement will eventually be blocked from UCSF's network.
Impacted Services: IT Field Services (ITFS) Desktop Support , ITFS Supported Macs