HomeSecurityCISA adds 17 vulnerabilities to list of flaws used in attacks

CISA adds 17 vulnerabilities to list of flaws used in attacks

This week, the Cybersecurity and Infrastructure Security Administration (CISA) added seventeen vulnerabilities that hackers are actively exploiting to its “Known Exploited Vulnerabilities Catalog.”.

CISA

See also: CISA to US organizations: Prepare for data-wiping attacks

The “Known Exploited Vulnerabilities Catalog” is a list of vulnerabilities that have been identified as being used by threat actors in attacks and which must be patched by Federal Civilian Executive Branch (FCEB) agencies.

The vulnerabilities listed in the list allow threat actors to perform a variety of attacks, such as stealing credentials, accessing networks, remotely executing commands, downloading and executing malware, or stealing information from devices.

With the addition of these 17 vulnerabilities, the list now contains a total of 341 vulnerabilities and includes the date by which companies must apply security updates to resolve the bug.

The seventeen new vulnerabilities added this week are listed below, with CISA requiring 10 of them to be patched within the first week of February.

See also: CISA: Apache Log4j scanner released to detect vulnerable apps

CISA
CISA

Of particular interest are the vulnerabilities CVE-2021-32648 and CVE-2021-35247, which were revealed this week to be actively used in attacks.

The “October CMS Improper Authentication” vulnerability listed as CVE-2021-32648 must be patched by February 1, 2022, due to its recent use to compromise and compromise Ukrainian government websites.

While Ukraine blames Russia for these attacks, some security experts attribute the attacks to a hacking group linked to Belarus, known as Ghostwriter.

See also: CISA & White House on cyberattacks: Be on alert ahead of Christmas

CISA adds 17 vulnerabilities to list of flaws used in attacks

The new vulnerability "SolarWinds Serv-U Inproper Input Validation" reported as CVE-2021-35247 was discovered by Microsoft to be exploited by hackers to propagate Log4j on domain controllers configured as LDAP servers.

While attacks using the Serv-U vulnerability ultimately failed, as Windows domain controllers are not vulnerable to Log4j exploits, CISA requires companies to patch the vulnerability by February 4, 2022.

It is highly recommended that all security professionals and administrators check the Known Exploited Vulnerabilities Catalog and make appropriate fixes.

Information source: bleepingcomputer.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Teo Ehc
Teo Ehchttps://www.secnews.gr
Be the limited edition.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS