Software Updates

CVT Deployment 1.107.0-1

Written by | Apr 22, 2024 7:16:54 PM

Summary

The latest update to the Fusion scan engine that powers our internal and external vulnerability scanning is now available. Enjoy!

 

New Vunerability Test Highlights

Some of the more interesting vulnerability tests we added recently are as follows:

Amazon Linux (Credentialed Checks)

 

Adobe ColdFusion

  • Adobe ColdFusion Deserialization of Untrusted Data (CVE-2023-26359) (CVE-2023-26359)
  • Adobe ColdFusion Deserialization of Untrusted Data (CVE-2023-29300) (CVE-2023-29300)
  • Adobe ColdFusion Deserialization of Untrusted Data (CVE-2023-38203) (CVE-2023-38203)
  • Adobe ColdFusion Improper Access Control vulnerability (CVE-2023-29298)
  • Adobe ColdFusion Improper Limitation of a Pathname to a Restricted Directory (CVE-2023-26361)
  • Adobe ColdFusion Improper Restriction of Excessive Authentication Attempts (CVE-2023-29301)
  • Adobe ColdFusion Unauthenticated Deserialization of Untrusted Data (CVE-2023-26360) (CVE-2023-26360)

 

Canonical Ubuntu

 

Debian

 

Fedora

 

FreeBSD

 

Microsoft

 

Red Hat (Credentialed Checks)

 

SUSE Enterprise Linux

 

How to Update?

All VikingCloud customers using the Fusion Scan Engine receive the updates automatically as soon as an update is available. No action is required.