Source |
The Hacker News |
Identifiant |
4397909 |
Date de publication |
2022-04-05 00:31:37 (vue: 2022-04-05 08:05:57) |
Titre |
CISA Warns of Active Exploitation of Critical Spring4Shell Vulnerability |
Texte |
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added the recently disclosed remote code execution (RCE) vulnerability affecting the Spring Framework, to its Known Exploited Vulnerabilities Catalog based on "evidence of active exploitation."
The critical severity flaw, assigned the identifier CVE-2022-22965 (CVSS score: 9.8) and dubbed "Spring4Shell", impacts Spring |
Notes |
★★★★★
|
Envoyé |
Oui |
Condensat |
2022 22965 active added affecting agency assigned catalog based cisa code critical cvss cybersecurity disclosed dubbed evidence execution exploitation exploited flaw framework identifier cve impacts infrastructure its known monday rce recently remote score: security severity spring spring4shell vulnerabilities vulnerability warns |
Tags |
Vulnerability
|
Stories |
|
Move |
|