Source |
The Hacker News |
Identifiant |
8646955 |
Date de publication |
2025-02-05 10:35:00 (vue: 2025-02-05 06:07:59) |
Titre |
CISA Adds Four Actively Exploited Vulnerabilities to KEV Catalog, Urges Fixes by Feb 25 |
Texte |
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild.
The list of vulnerabilities is as follows -
CVE-2024-45195 (CVSS score: 7.5/9.8) - A forced browsing vulnerability in Apache OFBiz that allows a remote attacker to obtain unauthorized
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild.
The list of vulnerabilities is as follows -
CVE-2024-45195 (CVSS score: 7.5/9.8) - A forced browsing vulnerability in Apache OFBiz that allows a remote attacker to obtain unauthorized |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2024 45195 5/9 active actively added adds agency allows apache attacker browsing catalog cisa citing cve cvss cybersecurity evidence exploitation exploited feb fixes flaws follows forced four infrastructure its kev known list obtain ofbiz remote score: security tuesday unauthorized urges vulnerabilities vulnerability wild |
Tags |
Vulnerability
|
Stories |
|
Move |
|