CISA Includes Four Actively Utilized Weaknesses to KEV Catalog, Calls for Remedies by February 25
On Tuesday, the Cybersecurity and Infrastructure Security Agency (CISA) of the United States incorporated four security vulnerabilities into its Catalog of Known Exploited Vulnerabilities (KEV), noting proof of ongoing exploitation in various environments.
Below are the vulnerabilities enlisted –
Below are the vulnerabilities enlisted –
CVE-2024-45195 (CVSS rating: 7.5/9.8) – A vulnerability related to forced exploration within Apache OFBiz, enabling an external attacker to gain unauthorized access.
