logo

U.S. CISA adds Adobe ColdFusion and Oracle Agile PLM flaws to its Known Exploited Vulnerabilities catalog

ID: 0c9085cc-4282-5338-a9b3-0e0726e3fe79

STIX ID: report--0c9085cc-4282-5338-a9b3-0e0726e3fe79

Feed Name: Security Affairs

Threat Score
70/100

Date Published: 2025-02-25

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

CISA added two high-severity deserialization vulnerabilities (Adobe ColdFusion CVE-2017-3066 and Oracle Agile PLM CVE-2024-20953) to its Known Exploited Vulnerabilities catalog; both enable remote code execution or system takeover, have CVSS scores of 9.8 and 8.8 respectively, and federal agencies are required to remediate them by the specified deadline.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.