資安事件新聞週報 2021/9/20 ~ 2021/9/24
1.重大弱點漏洞/後門/Exploit/Zero Day
New Nagios Software Bugs Could Let Hackers Take Over IT Infrastructures
https://thehackernews.com/2021/09/new-nagios-software-bugs-could-let.html
VMware 發布多個產品的安全更新
https://us-cert.cisa.gov/ncas/current-activity/2021/09/21/vmware-releases-security-updates
Cisco Releases Patches 3 New Critical Flaws Affecting IOS XE Software
https://thehackernews.com/2021/09/cisco-releases-patches-3-new-critical.html
Netgear 修復多款路由器嚴重漏洞
https://www.informationsecurity.com.tw/article/article_detail.aspx?aid=9470
Netgear 修復多款路由器嚴重漏洞,可導致駭侵者遠端執行任意程式碼
https://www.twcert.org.tw/tw/cp-104-5108-edb59-1.html
Aruba Operating System
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2021-37724
ArubaOS 存在安全弱點
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2021-37723
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2021-37718
蘋果修補舊款裝置的零時差攻擊漏洞
https://www.ithome.com.tw/news/146869
macOS含有一個可用來執行任意程式的安全漏洞
https://www.ithome.com.tw/news/146816
Urgent Apple iOS and macOS Updates Released to Fix Actively Exploited Zero-Days
https://thehackernews.com/2021/09/urgent-apple-ios-and-macos-updates.html
Microsoft Exchange Bug Exposes ~100,000 Windows Domain Credentials
https://thehackernews.com/2021/09/microsoft-exchange-bug-exposes-100000.html
用戶快更新!Windows出現嚴重漏洞 點開Office文件恐遭駭
https://reurl.cc/bnkG8E