CISA KEV Update Part IV – October 2024

CISA KEV Update Part IV – October 2024

The US CISA has added below vulnerabilities to its Known exploited vulnerabilities catalog based on the evidence of active exploitation CVE-2024-23113 With a CVSS score of 9.8, Fortinet FortiOS, FortiPAM,…
CISA KEV Update Part I – July 2024

CISA KEV Update Part I – July 2024

The U.S. CISA added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2024-23692 with a CVSS score of 9.8 is a template injection vulnerability that impacts Rejetto HTTP File Server,…
CISA KEV Update – May 2024

CISA KEV Update – May 2024

CISA is seen as active this week, and it has added five new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2014-100005 D-Link DIR-600 Router…
CISA adds CVE-2022-38028 to KEV Catalog

CISA adds CVE-2022-38028 to KEV Catalog

Attacks by Russian threat operation APT28, also known as Fancy Bear, Strontium, and Forest Blizzard, using the GooseEgg malware to exploit the Windows print spooler flaw. The vulnerability tracked as…
CISA KEV UPDATE March 2024 – Part 2

CISA KEV UPDATE March 2024 – Part 2

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. CVE-2023-48788 Fortinet FortiClient EMS SQL Injection Vulnerability with a CVSS score 9.3 is a critical…
CISA KEV Update March 2024 – Part I

CISA KEV Update March 2024 – Part I

The U.S. CISA has added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. CVE-2023-21237 Android Pixel Information Disclosure Vulnerability CVE-2021-36380 Sunhillo SureLine OS Command Injection Vulnerablity CVE-2024-21338 Microsoft Windows Kernel Exposed IOCTL with Insufficient…
CISA adds Fortinet bug to its KEV Catalog

CISA adds Fortinet bug to its KEV Catalog

The U.S. CISA adds Fortinet FortiOS Out-of-Bound write vulnerability to its Known Exploited Vulnerabilities (KEV) catalog. Fortinet has warned that the recently discovered critical remote code execution vulnerability in FortiOS…