logo

U.S. CISA adds WatchGuard Firebox, Microsoft Windows, and Gladinet Triofox flaws to its Known Exploited Vulnerabilities catalog

ID: 7cd79d90-ea0d-59d4-a9f1-9b5f9ae8b196

STIX ID: report--7cd79d90-ea0d-59d4-a9f1-9b5f9ae8b196

Feed Name: Security Affairs

Threat Score
85/100

Date Published: 2025-11-13

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

CISA added three actively exploited, high-risk flaws to its Known Exploited Vulnerabilities catalog: a critical unauthenticated RCE in WatchGuard Fireware affecting IKEv2 VPNs (CVE-2025-9242), a Gladinet Triofox authentication-bypass and remote payload execution exploited by UNC6485 (CVE-2025-12480), and a Windows kernel race condition local privilege escalation under active attack (CVE-2025-62215); federal agencies are ordered to remediate by December 3, 2025.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.