Skip to content

Commit

Permalink
Update KEV: Thu Nov 28 00:12:17 UTC 2024
Browse files Browse the repository at this point in the history
Signed-off-by: AboutCode Automation <[email protected]>
  • Loading branch information
AboutCode Automation committed Nov 28, 2024
1 parent 4de838e commit 00dcd57
Showing 1 changed file with 18 additions and 3 deletions.
21 changes: 18 additions & 3 deletions known_exploited_vulnerabilities.json
Original file line number Diff line number Diff line change
@@ -1,9 +1,24 @@
{
"title": "CISA Catalog of Known Exploited Vulnerabilities",
"catalogVersion": "2024.11.21",
"dateReleased": "2024-11-21T14:59:55.5769Z",
"count": 1222,
"catalogVersion": "2024.11.27",
"dateReleased": "2024-11-27T16:35:36.744Z",
"count": 1223,
"vulnerabilities": [
{
"cveID": "CVE-2023-28461",
"vendorProject": "Array Networks ",
"product": "AG\/vxAG ArrayOS",
"vulnerabilityName": "Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability",
"dateAdded": "2024-11-25",
"shortDescription": "Array Networks AG and vxAG ArrayOS contain a missing authentication for critical function vulnerability that allows an attacker to read local files and execute code on the SSL VPN gateway.",
"requiredAction": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
"dueDate": "2024-12-16",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https:\/\/support.arraynetworks.net\/prx\/001\/http\/supportportal.arraynetworks.net\/documentation\/FieldNotice\/Array_Networks_Security_Advisory_for_Remote_Code_Execution_Vulnerability_AG.pdf ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2023-28461",
"cwes": [
"CWE-306"
]
},
{
"cveID": "CVE-2024-21287",
"vendorProject": "Oracle",
Expand Down

0 comments on commit 00dcd57

Please sign in to comment.