Summary
The latest update to the TrustKeeper scan engine that powers our Trustwave Vulnerability Management product (including both internal and external vulnerability scanning) is now available. Enjoy!
New Vulnerability Test Highlights
Some of the more interesting vulnerability tests we added recently are as follows:
Cisco
- Cisco IOS and Cisco IOS XE Software Web UI Cross-Site Request Forgery Vulnerability (cisco-sa-20200108-ios-csrf_cvrf and CSCvq66030) (CVE-2019-16009)
Dell iDRAC
- Dell iDRAC Improper Authorization Vulnerability (DSA-2019-137) (CVE-2019-3764)
- Dell iDRAC Improper Error Handling Vulnerability (CVE-2018-15776) (CVE-2018-15776)
- Dell iDRAC Privilege Escalation Vulnerability (CVE-2018-15774) (CVE-2018-15774)
NGINX
- NGINX error_page Handler HTTP Request Smuggling Vulnerability (CVE-2019-20372)
Pulse Connect Secure
- Pulse Connect Secure Gateway File Disclosure Vulnerability (SA44101) (CVE-2019-11510)
Oracle
- Oracle Database January 2020 CPU Advisory (CVE-2020-2731, CVE-2020-2568, CVE-2020-2527, CVE-2020-2518, CVE-2020-2517, CVE-2020-2516, CVE-2020-2515, CVE-2020-2512, CVE-2020-2511, CVE-2020-2510, CVE-2019-10072)
- Oracle Enterprise Manager January 2020 CPU Advisory (CVE-2020-2646, CVE-2020-2645, CVE-2020-2644, CVE-2020-2643, CVE-2020-2642, CVE-2020-2641, CVE-2020-2640, CVE-2020-2639, CVE-2020-2638, CVE-2020-2636, CVE-2020-2635, CVE-2020-2634, CVE-2020-2633, CVE-2020-2632, CVE-2020-2631, CVE-2020-2630, CVE-2020-2629, CVE-2020-2628, CVE-2020-2626, CVE-2020-2625, CVE-2020-2624, CVE-2020-2623, CVE-2020-2622, CVE-2020-2621, CVE-2020-2620, CVE-2020-2619, CVE-2020-2618, CVE-2020-2617, CVE-2020-2616, CVE-2020-2615, CVE-2020-2613, CVE-2020-2612, CVE-2020-2611, CVE-2020-2610, CVE-2020-2609, CVE-2020-2608)
- Oracle Fusion Middleware January 2020 CPU Advisory (CVE-2020-2545, CVE-2020-2530)
- Oracle Solaris OS January 2020 CPU Advisory (CVE-2020-2696, CVE-2020-2680, CVE-2020-2664, CVE-2020-2656, CVE-2020-2647, CVE-2020-2605, CVE-2020-2578, CVE-2020-2565, CVE-2020-2558, CVE-2019-9579)
- Oracle WebLogic Server January 2020 CPU Advisory (CVE-2020-6950, CVE-2020-2552, CVE-2020-2551, CVE-2020-2550, CVE-2020-2549, CVE-2020-2548, CVE-2020-2547, CVE-2020-2546, CVE-2020-2544, CVE-2020-2519, CVE-2019-17359)
Samba
WordPress
How to Update?
All Trustwave customers using the TrustKeeper Scan Engine receive the updates automatically as soon as an update is available. No action is required.