Category Archives: Software

Windows and the cURL trap; deleted curl instance breaks Windows update

[German]Microsoft delivers the cURL library with the operating system since Windows 10. However, Redmond does not manage to update the delivered cURL version promptly when security vulnerabilities become known. This leads to the fact that Curl versions with known vulnerabilities … Continue reading

Posted in issue, Security, Software, Update, Windows | Tagged , , , , | Leave a comment

FSLogix blocks OneDrive synchronization in virtual machines

[German]Brief note for administrators who use FSLogix in the company on the one hand, but virtualize Windows instances on the other. In this combination, synchronization problems with OneDrive may occur. An error "FSLogix_unsupported_environment" is then reported. Microsoft confirmed this in … Continue reading

Posted in issue, Software, Virtualization, Windows | Tagged , , | Leave a comment

RCE vulnerability in Cisco SPA112 2-port phone adapter, drop that device

[German]US provider Cisco warns in a message about a critical vulnerability in one of its phone adapters. This vulnerability allows an attacker to take control of the device. Unfortunately, affected users can only dispose of this phone adapter, since the … Continue reading

Posted in devices, Security, Software | Tagged , | Leave a comment

Exchange Server 2019: 2023 H1 Cumulative Update released (May 3, 2023)

[German]Microsoft has released the 2023 H1 Cumulative Update for Exchange Server 2019, effective May 3. Also sailing under the acronym CU13, the update brings Modern Auth to Exchange 2019 and Outlook on Windows and is said to fix nearly 200 … Continue reading

Posted in Software, Update | Tagged , | Leave a comment

Google Chrome 113.0.5672.63/.64 and more

[German]Google has released updates to Google Chrome Browser 113 in the stable channel for Mac and Windows on May 2, 2023. These are security updates that fix critical vulnerabilities. The Extended Channel and the app for Android have also been … Continue reading

Posted in browser, Security, Software, Update | Tagged | Leave a comment

Why ISL Online: Critical factors when choosing a remote desktop solution

[Sponsored Post]In the rapidly evolving IT world, choosing the right remote desktop software is critical for organizations that value security, ease of use and reliability. One provider of secure remote access that has been on the market since 2001 is ISL Online, which presents some considerations for choosing such software below. More ...


SolarWinds hack in 2020: US Department of Justice knew 6 months in advance

[German]Does anyone remember the supply chain attack on SolarWinds' Orion software in 2020? That sent shockwaves through the IT landscape as masses of IT systems were hacked. Now it comes out that the US Department of Justice noticed the incident … Continue reading

Posted in Security, Software | Tagged , , , | Leave a comment

Microsoft receives the German Big Brother Award 2023 for its "life's work"

[German]Microsoft received the German Big Brother Award 2023 for its "life's work" yesterday, April 28, 2023, because it uses its market power to force people, companies and public authorities to constantly transmit data during their digital activities, thereby making themselves … Continue reading

Posted in Office, Security, Software, Windows | Tagged , , | Leave a comment

Zyxel: Security advisory for CVE-2023-28771 in firewalls

Blog reader Liam had alerted me about vulnerability CVE-2023-28771 in Zyxel firewalls via email just a few days ago (thanks for that). An April 25, 2023 post states that improper handling of error messages occurs in Zyxel ZyWALL/USG series firmware … Continue reading

Posted in Security, Software | Tagged , | Leave a comment

SonicOS SSLVPN: CVE-2023-1101 at MFA – new firmware for Gen6 firewalls (6.5.4.12-101n)

[German]Reminder for administrators using Sonic Wall products. There is a critical vulnerability in SonicOS SSLVPN that allows an authenticated attacker to use excessive MFA codes. The vulnerability, CVE-2023-1101, received a CVSS v3 index of 4.3 from SonicWall on March 28, … Continue reading

Posted in Security, Software | Tagged | Leave a comment

Apache Superset: CVE-2023-27524 allows Remote Code Execution (RCE)

[German]Brief note for users who deploy Apache Superset in their environment. There is a problem in the default configuration that the software can be attacked via remote code execution vulnerability. This becomes a problem if the server is accessible via … Continue reading

Posted in Security, Software | Tagged , | Leave a comment