CVE-2016-7542

A read-only administrator on Fortinet devices with FortiOS 5.2.x before 5.2.10 GA and 5.4.x before 5.4.2 GA may have access to read-write administrators password hashes (not including super-admins) stored on the appliance via the webui REST API, and may therefore be able to crack them.

CVE-2016-7541

Long lived sessions in Fortinet FortiGate devices with FortiOS 5.x before 5.4.0 could violate a security policy during IPS signature updates when the FortiGate’s IPSengine is configured in flow mode. All FortiGate versions with IPS configured in proxy mode (the default mode) are not affected.

US Congress sends a (no) privacy note to the entire connected world

US Congress sends a (no) privacy note to the entire connected world

US consumers are set to lose control over their online privacy as a consequence of the US Congress throwing out incoming rules for Internet Service Providers that would have given consumers a direct say in how ISPs can use their private data. The overturned rules – passed last October but not yet implemented – would […]

The post US Congress sends a (no) privacy note to the entire connected world appeared first on Avira Blog.

Meet the Transformers: Meet Pop.Up, a conceptional car

Pop.Up

It’s like a wet dream for any driver. While all the others enjoy the stop and go rush hour traffic you’re changing into air-mode, pull ahead and cock a snook at the earthbound drivers. Let’s talk about the new and very conceptional car “Pop.Up”. Airbus and the Italian service provider ItalDesign introduced Pop.Up at the Geneva […]

The post Meet the Transformers: Meet Pop.Up, a conceptional car appeared first on Avira Blog.