Close Menu
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On
Meta is secretly working on an AI detection tool after unleashing AI slop avalanche

Meta is secretly working on an AI detection tool after unleashing AI slop avalanche

16 March 2026
What’s New in the AirPods Max 2? Breaking Down Apple’s Headphone Update

What’s New in the AirPods Max 2? Breaking Down Apple’s Headphone Update

16 March 2026
Someone gave the MacBook Neo the 1TB storage upgrade it never got from Apple

Someone gave the MacBook Neo the 1TB storage upgrade it never got from Apple

16 March 2026
Facebook X (Twitter) Instagram
Just In
  • Meta is secretly working on an AI detection tool after unleashing AI slop avalanche
  • What’s New in the AirPods Max 2? Breaking Down Apple’s Headphone Update
  • Someone gave the MacBook Neo the 1TB storage upgrade it never got from Apple
  • File Your Taxes With TurboTax Full Service Now Before Prices Go Up
  • NVIDIA announces DLSS 5 with photorealistic lighting to change the future of gaming
  • JBL’s Best Wireless Headphones Are $170 Off at Walmart
  • Clair Obscur, Dispatch, And Ghost Of Yōtei Lead 2026 BAFTA Game Awards Nominations
  • I just watched The Madison, here’s why Yellowstone fans should watch Taylor Sheridan’s new series
Facebook X (Twitter) Instagram Pinterest Vimeo
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release
Subscribe
Best in TechnologyBest in Technology
Home » Here Are the Google and Microsoft Security Updates You Need Right Now
News

Here Are the Google and Microsoft Security Updates You Need Right Now

News RoomBy News Room29 February 20244 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Here Are the Google and Microsoft Security Updates You Need Right Now
Share
Facebook Twitter LinkedIn Pinterest Email

CVE-2024-1553 and CVE-2024-1557 are memory-safety bugs rated as having a high severity. “Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code,” Mozilla researchers said.

Zoom

Video conferencing giant Zoom has issued fixes for seven flaws in its software, one of which has a CVSS score of 9.6. CVE-2024-24691 is an improper-input-validation bug in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows. If exploited, the issue may allow an unauthenticated attacker to escalate their privileges via network access, Zoom said in a security bulletin.

Another notable flaw is CVE-2024-24697, an untrusted-search-path issue in some Zoom 32 bit Windows clients that could allow an authenticated user with local access to escalate their privileges.

Ivanti

In January, Ivanti warned that attackers were targeting two unpatched vulnerabilities in its Connect Secure and Policy Secure products, tracked as CVE-2023-46805 and CVE-2024-21887. With a CVSS score of 8.2 the first authentication-bypass vulnerability in the web component of Ivanti Connect Secure and Ivanti Policy Secure allows a remote attacker to access restricted resources by bypassing control checks.

With a CVSS score of 9.1, the second command injection vulnerability in web components of Ivanti Connect Secure and Ivanti Policy Secure allows an authenticated administrator to send specially crafted requests and execute arbitrary commands on the appliance. This vulnerability can be exploited over the internet.

At the end of the month, the firm alerted companies to another two serious flaws, one of which was being exploited in attacks. The exploited issue is a server-side request forgery bug in the SAML component tracked as CVE-2024-21893. Meanwhile, CVE-2024-21888 is a privilege-escalation vulnerability.

Patches were available by February 1, but the issues were deemed so serious that the US Cybersecurity and Infrastructure Security Agency (CISA) advised disconnecting all Ivanti products by February 2.

On February 8, Ivanti released a patch for yet another issue tracked as CVE-2024-22024, which prompted another CISA warning.

Fortinet

Fortinet has issued a patch for a critical issue with a CVSS score of 9.6, which it says is already being used in attacks. Tracked as CVE-2024-21762, the code-execution flaw impacts FortiOS versions 6.0, 6.2, 6.4, 7.0, 7.2 and 7.4. The out-of-bounds write vulnerability can be used for arbitrary code execution using specially crafted HTTP requests, Fortinet said.

It came just days after the firm released a patch for two issues in its FortiSIEM products, CVE-2024-23108 and CVE-2024-23109, rated as critical with a CVSS score of 9.7. The flaw in FortiSIEM Supervisor could allow a remote unauthenticated attacker to execute unauthorized commands via crafted API requests, Fortinet said in an advisory.

Cisco

Cisco has listed multiple vulnerabilities in its Expressway Series that could allow an unauthenticated, remote attacker to conduct cross-site request forgery attacks.

Tracked as CVE-2024-20252 and CVE-2024-20254, two vulnerabilities in the API of Cisco Expressway Series devices have been given a CVSS score of 9.6. “An attacker could exploit these vulnerabilities by persuading a user of the API to follow a crafted link,” Cisco said. “A successful exploit could allow the attacker to perform arbitrary actions with the privilege level of the affected user.”

SAP

Enterprise software firm SAP has released 13 security updates as part of its SAP Security Patch Day. CVE-2024-22131 is a code-injection vulnerability in SAP ABA with a CVSS score of 9.1.

CVE-2024-22126 is a cross-site scripting vulnerability in NetWeaver AS Java listed as having a high impact, with a CVSS score of 8.8. “Incoming URL parameters are insufficiently validated and improperly encoded before including them into redirect URLs,” security firm Onapsis said. “This can result in a cross-site scripting vulnerability, leading to a high impact on confidentiality and mild impact on integrity and availability.”

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleXiaomi Smart Band 8 Pro Online at Lowest Price in India
Next Article What is HDR TV? High dynamic range and why you need it

Related Articles

Meta is secretly working on an AI detection tool after unleashing AI slop avalanche
News

Meta is secretly working on an AI detection tool after unleashing AI slop avalanche

16 March 2026
What’s New in the AirPods Max 2? Breaking Down Apple’s Headphone Update
News

What’s New in the AirPods Max 2? Breaking Down Apple’s Headphone Update

16 March 2026
Someone gave the MacBook Neo the 1TB storage upgrade it never got from Apple
News

Someone gave the MacBook Neo the 1TB storage upgrade it never got from Apple

16 March 2026
File Your Taxes With TurboTax Full Service Now Before Prices Go Up
News

File Your Taxes With TurboTax Full Service Now Before Prices Go Up

16 March 2026
NVIDIA announces DLSS 5 with photorealistic lighting to change the future of gaming
News

NVIDIA announces DLSS 5 with photorealistic lighting to change the future of gaming

16 March 2026
JBL’s Best Wireless Headphones Are 0 Off at Walmart
News

JBL’s Best Wireless Headphones Are $170 Off at Walmart

16 March 2026
Demo
Top Articles
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024130 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024111 Views
Costco partners with Electric Era to bring back EV charging in the U.S.

Costco partners with Electric Era to bring back EV charging in the U.S.

28 October 2024100 Views

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Latest News
JBL’s Best Wireless Headphones Are 0 Off at Walmart News

JBL’s Best Wireless Headphones Are $170 Off at Walmart

News Room16 March 2026
Clair Obscur, Dispatch, And Ghost Of Yōtei Lead 2026 BAFTA Game Awards Nominations Gaming

Clair Obscur, Dispatch, And Ghost Of Yōtei Lead 2026 BAFTA Game Awards Nominations

News Room16 March 2026
I just watched The Madison, here’s why Yellowstone fans should watch Taylor Sheridan’s new series News

I just watched The Madison, here’s why Yellowstone fans should watch Taylor Sheridan’s new series

News Room16 March 2026
Most Popular
The Spectacular Burnout of a Solar Panel Salesman

The Spectacular Burnout of a Solar Panel Salesman

13 January 2025137 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024130 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024111 Views
Our Picks
File Your Taxes With TurboTax Full Service Now Before Prices Go Up

File Your Taxes With TurboTax Full Service Now Before Prices Go Up

16 March 2026
NVIDIA announces DLSS 5 with photorealistic lighting to change the future of gaming

NVIDIA announces DLSS 5 with photorealistic lighting to change the future of gaming

16 March 2026
JBL’s Best Wireless Headphones Are 0 Off at Walmart

JBL’s Best Wireless Headphones Are $170 Off at Walmart

16 March 2026

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact Us
© 2026 Best in Technology. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.