A vulnerability has been found in Grafana 10.4.0 and classified as problematic. This vulnerability affects unknown code of the component Pending Invite Handler. The manipulation leads to authorization bypass.
This vulnerability was named CVE-2024-10452. The attack can be initiated remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in Apple iOS up to 10.2. Affected by this issue is some unknown functionality of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2017-2401. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
When a large hospital in an urban area is shut down by ransomware, the disruption can be significant, but when a rural hospital faces a similar cyber outage, the impact on patient safety and the community can be extreme, said Nitin Natarajan of the Cybersecurity and Infrastructure Security Agency.