Adobe, Oracle Users: Critical Vulnerability Notice
ID: eb15b80b-1a5c-5e25-8aa2-2d5d3c5b2fa2
STIX ID: report--eb15b80b-1a5c-5e25-8aa2-2d5d3c5b2fa2
Feed Name: Cyble Blog
Threat Score
CISA added two deserialization vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2017-3066 in Adobe ColdFusion (historic but still exploitable if unpatched) and CVE-2024-20953 in Oracle Agile PLM (CVSS 3.1 base score 8.8), both of which can enable remote code execution; vendors have issued patches and the report recommends immediate patching, configuration review, and monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
