Newly Exploited Vulnerabilities Target Cisco, Microsoft, and More – CISA Warns
ID: 2fdb4790-dd0a-5265-b9f7-1bbf536531b6
STIX ID: report--2fdb4790-dd0a-5265-b9f7-1bbf536531b6
Feed Name: The Cyber Express
CISA added five actively exploited vulnerabilities to its Known Exploited Vulnerabilities Catalog affecting Cisco Small Business RV routers, Hitachi Vantara Pentaho Business Analytics Server, Microsoft Windows (Win32k), and Progress WhatsUp Gold; impacts include command injection, authorization bypass, special-element injection, privilege escalation, and an unauthenticated path traversal that can lead to remote code execution (CVE-2024-4885 rated 9.8). The report emphasizes the risks of system compromise and data breaches, notes severity scores and that some issues (e.g., the Cisco flaw) lack vendor patches, and recommends urgent patching, mitigation, and monitoring by affected organizations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
