Site icon TheCyberThrone

CISA KEV Catalog Update Part VII – March 2025

Advertisements

The Cybersecurity and Infrastructure Security Agency (CISA) has added three critical vulnerabilities affecting Nakivo Backup & Replication, SAP NetWeaver, and Edimax IP cameras to its Known Exploited Vulnerabilities (KEV) catalog, citing active exploitation.

1. Nakivo Backup & Replication Vulnerability (CVE-2024-48248)

Type: Absolute Path Traversal.

Description:

Affected Versions:

Impact:

Mitigation:


2. SAP NetWeaver Vulnerability (CVE-2017-12637)

Type: Directory Traversal.

Description:

Affected Versions:

Impact:

Mitigation:


3. Edimax IP Camera Vulnerability (CVE-2025-1316)

Type: OS Command Injection.

Description:

Affected Devices:

Impact:

Mitigation:


CISA’s Recommendations

These additions to the KEV catalog highlight the importance of addressing vulnerabilities in both enterprise software and IoT devices

Exit mobile version