2026年8月13日星期四

IBM WebSphere 產品多個漏洞

IBM WebSphere 產品多個漏洞

發佈日期: 2026年08月13日

於 IBM WebSphere 產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升及繞過保安限制。


影響

  • 阻斷服務
  • 權限提升
  • 繞過保安限制

受影響之系統或技術

  • IBM WebSphere Application Server - Liberty 17.0.0.3 - 26.0.0.8 版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

IBM WebSphere Products Multiple Vulnerabilities

IBM WebSphere Products Multiple Vulnerabilities

Release Date: 13 Aug 2026

Multiple vulnerabilities were identified in IBM WebSphere Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege and security restriction bypass on the targeted system.


Impact

  • Denial of Service
  • Elevation of Privilege
  • Security Restriction Bypass

System / Technologies affected

  • IBM WebSphere Application Server - Liberty version 17.0.0.3 - 26.0.0.8

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

MongoDB 多個漏洞

MongoDB 多個漏洞

發佈日期: 2026年08月13日

於 MongoDB 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發繞過保安限制、遠端執行任意程式碼、資料篡改、阻斷服務狀況、權限提升及洩露敏感資料。


影響

  • 阻斷服務
  • 資料洩露
  • 遠端執行程式碼
  • 繞過保安限制
  • 權限提升
  • 篡改

受影響之系統或技術

  • MongoDB Driver 4.11.0 至 5.9.2 之前的版本

  • MongoDB Server 7.0.0 至 7.0.40 之前的版本

  • MongoDB Server 8.0.0 至 8.0.29 之前的版本

  • MongoDB Server 8.3.0 至 8.3.8 之前的版本


解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝供應商提供的修補程式:

 


漏洞識別碼


資料來源


相關連結

MongoDB Multiple Vulnerabilities

MongoDB Multiple Vulnerabilities

Release Date: 13 Aug 2026

Multiple vulnerabilities were identified in MongoDB. A remote attacker could exploit some of these vulnerabilities to trigger security restriction bypass, remote code execution, data manipulation, denial of service condition, elevation of privilege and sensitive information disclosure on the targeted system.


Impact

  • Denial of Service
  • Information Disclosure
  • Remote Code Execution
  • Security Restriction Bypass
  • Elevation of Privilege
  • Data Manipulation

System / Technologies affected

  • MongoDB Driver 4.11.0 versions prior to 5.9.2

  • MongoDB Server 7.0.0 versions prior to 7.0.40

  • MongoDB Server 8.0.0 versions prior to 8.0.29

  • MongoDB Server 8.3.0 versions prior to 8.3.8


Solutions

Before installation of the software, please visit the vendor web-site for more details.

Apply fixes issued by the vendor:

 


Vulnerability Identifier


Source


Related Link

Fortinet 產品多個漏洞

Fortinet 產品多個漏洞

發佈日期: 2026年08月13日

於 Fortinet 產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發仿冒、遠端執行任意程式碼、阻斷服務狀況、權限提升及繞過保安限制。


影響

  • 繞過保安限制
  • 仿冒
  • 阻斷服務
  • 遠端執行程式碼
  • 權限提升

受影響之系統或技術

  • FortiClientWindows 7.2.0 至 7.2.11
  • FortiClientWindows 7.4.0 至 7.4.3
  • FortiManager 7.2.5 至 7.2.9
  • FortiManager 7.4.3 至 7.4.5
  • FortiManager 7.6.1  
  • FortiManager Cloud 7.2.5 至 7.2.9
  • FortiManager Cloud 7.4.3 至 7.4.5
  • FortiManager Cloud 7.6.1
  • FortiOS 7.2 所有版本
  • FortiOS 7.4 所有版本
  • FortiOS 7.6.0 至 7.6.6
  • FortiWeb 7.2 所有版本
  • FortiWeb 7.4 所有版本
  • FortiWeb 7.6.0 至 7.6.6
  • FortiWeb 8.0.0 至 8.0.2

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

Fortinet Products Multiple Vulnerabilities

Fortinet Products Multiple Vulnerabilities

Release Date: 13 Aug 2026

Multiple vulnerabilities were identified in Fortinet Products. A remote attacker could exploit some of these vulnerabilities to trigger spoofing, remote code execution, denial of service condition, elevation of privilege and security restriction bypass on the targeted system.


Impact

  • Security Restriction Bypass
  • Spoofing
  • Denial of Service
  • Remote Code Execution
  • Elevation of Privilege

System / Technologies affected

  • FortiClientWindows 7.2.0 through 7.2.11
  • FortiClientWindows 7.4.0 through 7.4.3
  • FortiManager 7.2.5 through 7.2.9
  • FortiManager 7.4.3 through 7.4.5
  • FortiManager 7.6.1  
  • FortiManager Cloud 7.2.5 through 7.2.9
  • FortiManager Cloud 7.4.3 through 7.4.5
  • FortiManager Cloud 7.6.1
  • FortiOS 7.2 all versions
  • FortiOS 7.4 all versions
  • FortiOS 7.6.0 through 7.6.6
  • FortiWeb 7.2 all versions
  • FortiWeb 7.4 all versions
  • FortiWeb 7.6.0 through 7.6.6
  • FortiWeb 8.0.0 through 8.0.2

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

2026年8月12日星期三

思科產品多個漏洞

思科產品多個漏洞

發佈日期: 2026年08月12日

於思科產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況及敏感資料洩露。

 

注意:

CVE-2026-20349 正在被廣泛利用。 如果已啟用 Remote Access SSL VPN 服務,遠端攻擊者可利用此漏洞於目標系統觸發阻斷服務狀況。因此,此漏洞的風險等級被評為高度風險。


影響

  • 阻斷服務
  • 資料洩露

受影響之系統或技術

  • Cisco Secure Endpoint Connector
  • Cisco Secure Firewall ASA Software
  • Cisco Secure FMC Software
  • Cisco Secure FTD Software
  • Cisco Catalyst SD-WAN Manager

請參考供應商發佈的連結以了解受影響的版本:


解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

IBM WebSphere 產品多個漏洞

IBM WebSphere 產品多個漏洞 發佈日期: 2026年08月13日 於 IBM WebSphere 產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升及繞過保安限制。 影響 阻斷服務 權限提升 繞過保安限制 受影響之系統或技術 IBM We...