Close Menu
  • Home
  • Opinion
  • Region
    • Africa
    • Asia
    • Europe
    • Middle East
    • North America
    • Oceania
    • South America
  • AI & Machine Learning
  • Robotics & Automation
  • Space & Deep Tech
  • Web3 & Digital Economies
  • Climate & Sustainability Tech
  • Biotech & Future Health
  • Mobility & Smart Cities
  • Global Tech Pulse
  • Cybersecurity & Digital Rights
  • Future of Work & Education
  • Trend Radar & Startup Watch
  • Creator Economy & Culture
What's Hot

Metropolis (1927) Created The Blueprint For Trendy Science Fiction Worlds

March 12, 2026

UAE Residents Flip to Staycations for Eid as Wego Sees Surge in Resort Searches

March 12, 2026

Hong Kong and Shanghai Collaborate on Blockchain Cargo Knowledge Initiative

March 12, 2026
Facebook X (Twitter) Instagram LinkedIn RSS
NextTech NewsNextTech News
Facebook X (Twitter) Instagram LinkedIn RSS
  • Home
  • Africa
  • Asia
  • Europe
  • Middle East
  • North America
  • Oceania
  • South America
  • Opinion
Trending
  • Metropolis (1927) Created The Blueprint For Trendy Science Fiction Worlds
  • UAE Residents Flip to Staycations for Eid as Wego Sees Surge in Resort Searches
  • Hong Kong and Shanghai Collaborate on Blockchain Cargo Knowledge Initiative
  • U of T to accomplice with India on well being AI
  • Krafton Strikes from AI Ambition to Bodily AI Execution with Ludo Robotics – KoreaTechDesk
  • What is going to increased oil costs do to Canada’s financial system?
  • Zoox now testing robotaxis in 10 cities
  • Restoring surgeons’ sense of contact with robotic fingertips
Thursday, March 12
NextTech NewsNextTech News
Home - Cybersecurity & Digital Rights - Dozens of Distributors Patch Safety Flaws Throughout Enterprise Software program and Community Units
Cybersecurity & Digital Rights

Dozens of Distributors Patch Safety Flaws Throughout Enterprise Software program and Community Units

NextTechBy NextTechMarch 11, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
Follow Us
Google News Flipboard
Dozens of Distributors Patch Safety Flaws Throughout Enterprise Software program and Community Units
Share
Facebook Twitter LinkedIn Pinterest Email


Ravie LakshmananMar 11, 2026Vulnerability / Enterprise Safety

SAP has launched safety updates to deal with two crucial safety flaws that might be exploited to realize arbitrary code execution on affected programs.

The vulnerabilities in query listed under –

  • CVE-2019-17571 (CVSS rating: 9.8) – A code injection vulnerability in SAP Citation Administration Insurance coverage software (FS-QUO)
  • CVE-2026-27685 (CVSS rating: 9.1) – An insecure deserialization vulnerability in SAP NetWeaver Enterprise Portal Administration

“The applying makes use of an outdated artifact of Apache Log4j 1.2.17 that’s susceptible to CVE-2019-17571,” SAP safety firm Onapsis mentioned. “It permits an unprivileged attacker to execute arbitrary code remotely on the server, inflicting excessive impression on confidentiality, integrity, and availability of the applying.”

CVE-2026-27685, alternatively, stems from lacking or inadequate validation through the deserialization of uploaded content material, which might permit an attacker to add untrusted or malicious content material.

“Solely the truth that an attacker requires excessive privileges for a profitable exploit prevents the vulnerability from being tagged with a CVSS rating of 10,” Onapsis added.

The disclosure comes as Microsoft shipped patches for 84 vulnerabilities throughout merchandise, together with dozens of privilege escalation and distant code execution flaws.

On Tuesday, Adobe additionally introduced patches for 80 vulnerabilities, 4 of that are crucial flaws impacting Adobe Commerce and Magento Open Supply that would lead to privilege escalation and safety function bypass. Individually, it fastened 5 crucial vulnerabilities in Adobe Illustrator that would pave the way in which for arbitrary code execution.

Elsewhere, Hewlett Packard Enterprise put out fixes for 5 shortcomings in Aruba Networking AOS-CX. Probably the most extreme of the issues is CVE-2026-23813 (CVSS rating: 9.8), an authentication bypass affecting the administration interface.

“A vulnerability has been recognized within the web-based administration interface of AOS-CX switches that would probably permit an unauthenticated distant actor to bypass present authentication controls,” HPE mentioned. “In some circumstances, this might allow resetting the admin password.”

“Exploitation of this Aruba vulnerability probably offers attackers full management of AOS-CX community units and the flexibility to compromise a whole system undetected,” Ross Filipek, CISO at Corsica Applied sciences, mentioned in an announcement.

“A profitable compromise might result in the disruption of community communications or the erosion of the integrity of key enterprise companies. This flaw is a reminder that vulnerabilities in community units have gotten extra frequent in right now’s hyper-connected world. When attackers acquire privileged entry to those units, it places organizations at vital danger.”

Software program Patches from Different Distributors

Safety updates have additionally been launched by different distributors over the previous few weeks to rectify a number of vulnerabilities, together with —

  • ABB
  • Amazon Internet Companies
  • AMD
  • Arm
  • Atlassian
  • Bosch
  • Broadcom (together with VMware)
  • Canon
  • Cisco
  • Commvault
  • Dassault Systèmes
  • Dell
  • Devolutions
  • Drupal
  • Elastic
  • F5
  • Fortinet
  • Fortra
  • Foxit Software program
  • GitLab
  • Google Android and Pixel
  • Google Chrome
  • Google Cloud
  • Google Pixel Watch
  • Google Put on OS
  • Grafana
  • Hitachi Vitality
  • Honeywell
  • HP
  • HP Enterprise (together with Aruba Networking and Juniper Networks)
  • IBM
  • Intel
  • Ivanti
  • Jenkins
  • Lenovo
  • Linux distributions AlmaLinux, Alpine Linux, Amazon Linux, Arch Linux, Debian, Gentoo, Oracle Linux, Mageia, Pink Hat, Rocky Linux, SUSE, and Ubuntu
  • MediaTek
  • Mitsubishi Electrical
  • Moxa
  • Mozilla Firefox, Firefox ESR, and Thunderbird
  • n8n
  • NVIDIA
  • Palo Alto Networks
  • QNAP
  • Qualcomm
  • Ricoh
  • Samsung
  • Schneider Electrical
  • ServiceNow
  • Siemens
  • SolarWinds
  • Splunk
  • Synology
  • TP-Hyperlink
  • Development Micro
  • WatchGuard
  • Western Digital
  • Zoom, and
  • Zyxel

Elevate your perspective with NextTech Information, the place innovation meets perception.
Uncover the most recent breakthroughs, get unique updates, and join with a world community of future-focused thinkers.
Unlock tomorrow’s traits right now: learn extra, subscribe to our e-newsletter, and develop into a part of the NextTech group at NextTech-news.com

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
NextTech
  • Website

Related Posts

How to not steal $46 million from the US authorities • Graham Cluley

March 12, 2026

Twitter suspended 800 million accounts final yr — so why does manipulation stay so rampant?

March 11, 2026

APT28 Makes use of BEARDSHELL and COVENANT Malware to Spy on Ukrainian Army

March 10, 2026
Add A Comment
Leave A Reply Cancel Reply

Economy News

Metropolis (1927) Created The Blueprint For Trendy Science Fiction Worlds

By NextTechMarch 12, 2026

Metropolis, an iconic silent German manufacturing from 1927 directed by Fritz Lang, continues to throw…

UAE Residents Flip to Staycations for Eid as Wego Sees Surge in Resort Searches

March 12, 2026

Hong Kong and Shanghai Collaborate on Blockchain Cargo Knowledge Initiative

March 12, 2026
Top Trending

Metropolis (1927) Created The Blueprint For Trendy Science Fiction Worlds

By NextTechMarch 12, 2026

Metropolis, an iconic silent German manufacturing from 1927 directed by Fritz Lang,…

UAE Residents Flip to Staycations for Eid as Wego Sees Surge in Resort Searches

By NextTechMarch 12, 2026

Wego, the primary journey app and the biggest on-line journey market within…

Hong Kong and Shanghai Collaborate on Blockchain Cargo Knowledge Initiative

By NextTechMarch 12, 2026

time updates and a tamper-proof report of transactions. This not solely improves…

Subscribe to News

Get the latest sports news from NewsSite about world, sports and politics.

NEXTTECH-LOGO
Facebook X (Twitter) Instagram YouTube

AI & Machine Learning

Robotics & Automation

Space & Deep Tech

Web3 & Digital Economies

Climate & Sustainability Tech

Biotech & Future Health

Mobility & Smart Cities

Global Tech Pulse

Cybersecurity & Digital Rights

Future of Work & Education

Creator Economy & Culture

Trend Radar & Startup Watch

News By Region

Africa

Asia

Europe

Middle East

North America

Oceania

South America

2025 © NextTech-News. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Service
  • Advertise With Us
  • Write For Us
  • Submit Article & Press Release

Type above and press Enter to search. Press Esc to cancel.

Subscribe For Latest Updates

Sign up to best of Tech news, informed analysis and opinions on what matters to you.

Invalid email address
 We respect your inbox and never send spam. You can unsubscribe from our newsletter at any time.     
Thanks for subscribing!