CISA Identifies Serious Weaknesses in Mitel and Oracle Systems as They are Being Actively Exploited
The United States Cybersecurity and Infrastructure Security Agency (CISA) disclosed on Tuesday that three vulnerabilities affecting Mitel MiCollab and Oracle WebLogic Server have been included in its Known Exploited Vulnerabilities (KEV) database, with indications of ongoing exploitation.
The vulnerabilities are detailed below –
The vulnerabilities are detailed below –
CVE-2024-41713 (CVSS score: 9.1) – A vulnerability related to path traversal in Mitel MiCollab which could potentially be exploited by a malicious actor
