Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-30333PUBLISHED: 2022-05-09RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.
CVE-2022-23066PUBLISHED: 2022-05-09
In Solana rBPF versions 0.2.26 and 0.2.27 are affected by Incorrect Calculation which is caused by improper implementation of sdiv instruction. This can lead to the wrong execution path, resulting in huge loss in specific cases. For example, the result of a sdiv instruction may decide whether to tra...
CVE-2022-28463PUBLISHED: 2022-05-08ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow.
CVE-2022-28470PUBLISHED: 2022-05-08marcador package in PyPI 0.1 through 0.13 included a code-execution backdoor.
CVE-2022-1620PUBLISHED: 2022-05-08NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 allows attackers to cause a denial of service (application crash) via a crafted input.
User Rank: Ninja
10/31/2014 | 12:59:35 PM
Now, in terms of performance, it's a similar thing. You identify exactly what you need in your firewall, what you can replace with intermittant services rather than persistant, and also what can be replaced with pure staff power; re-design and roll out with only what you need; the understanding being that you do not turn anything off later without replacing it with another form of that service, or a modified version. But also, performance can be affected by the software itself - not all algorithms are equal and before buying deep analytics that are going to sit on your network, you should understand the code and whether there are better options out there; even bringing an in-house team to write the code so the footprint is small and the drag on performance is as minimal as possible may be worth the money in the long run.
Trim all the digital fat, and make sure only the best designed code is in place.
P.S. I suspect that of those admins interviewed, many of them didn't fully understand the options available in their software. Even bloatware can often be configurable to minimize features and for performance fine-tuning. Know your apps backward and forward, spend time with the application tech support to identify areas for improvement, and if that isn't working - buy another product.