Rewterz

Rewterz Threat Alert – TrickBot – Active IOCs

June 4, 2021
Rewterz

Rewterz Threat Advisory – CVE-2021-1838 – Apple macOS, iOS, and iPadOS Vulnerability

June 4, 2021

Rewterz Threat Advisory – CVE-2021-32930; CVE-2021-32932 – ICS: Advantech iView

Severity

High

Analysis Summary

CVE-2021-32930

The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code.

CVE-2021-32932

The affected product is vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information.

Impact

  • Remote code execution
  • Information disclosure

Affected Vendors

Advantech

Affected Products

  • iView versions prior to v5.7.03.6182

Remediation

Advantech recommends updating firmware to Version 5.7.03.6182

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.