Government of the Republic of Trinidad and Tobago
gov.tt

Securing the Nation's Digital Infrastructure

TTCSIRT-273.012720: TT-CSIRT ADVISORY – MULTIPLE VULNERABILITIES IN PHP COULD ALLOW FOR ARBITRARY CODE EXECUTION

Multiple vulnerabilities have been discovered in PHP, the most severe of which could allow for arbitrary code execution. PHP is a programming language originally designed for use in web-based applications with HTML content. PHP supports a wide variety of platforms and is used by numerous web-based software applications. Successfully exploiting the most severe of these …

TTCSIRT-272.012720: TT-CSIRT ADVISORY – CISCO EMAIL SECURITY APPLIANCE CONTENT FILTER BYPASS VULNERABILTY

Cisco has released security updates to address a vulnerability affecting the email message of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA). This could allow an unauthenticated, remote attacker to bypass configured filters on the device. An attacker could exploit this vulnerability by sending a crafted email message to a recipient protected by the …

TTCSIRT-271.012720: TT-CSIRT ADVISORY – CISCO RELEASES SECURITY UPDATES

Cisco has released security updates to address a vulnerability affecting Cisco Webex Meetings Suite and Cisco Webex Meetings Online. A remote attacker could exploit this vulnerability to obtain sensitive information. TT-CSIRT encourages users and administrators to review Cisco Security Advisory and apply the necessary updates. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200124-webex-unauthjoin