8/24至8/30 Known Exploited Vulnerabilities Catalog(KEV)週報
- 發布單位:TWCERT/CC
- 更新日期:2026-09-04
- 點閱次數:27
- 內容說明
CISA於8/24至8/30在Known Exploited Vulnerabilities Catalog(KEV)中發布11個已遭駭客利用之漏洞。
- 影響平台
Ajax.NET Professional|Ajax.NET Professional
Citrix|NetScaler ADC and NetScaler Gateway
Gitea|Gitea
JFrog|Artifactory
Linux|Kernel
Microsoft|SQL Server
Oracle|HTTP Server and Oracle Weblogic Server Proxy Plug-in
ownCloud|ownCloud
Red Hat|Automatic Bug Reporting Tool
Red Hat|Libuser
- 處置建議
修補說明請參考以下官方連結:
CVE-2021-23758
Ajax.NET Professional|Ajax.NET Professional
https://nvd.nist.gov/vuln/detail/CVE-2021-23758
CVE-2026-8452
Citrix|NetScaler ADC and NetScaler Gateway
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696604
https://nvd.nist.gov/vuln/detail/CVE-2026-8452
CVE-2026-60004
Gitea|Gitea
https://github.com/go-gitea/gitea/security/advisories/GHSA-rcr6-4jqh-j84m
https://nvd.nist.gov/vuln/detail/CVE-2026-60004
CVE-2026-66384
JFrog|Artifactory
https://docs.jfrog.com/releases/docs/jfrog-security-advisories
https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases
https://nvd.nist.gov/vuln/detail/CVE-2026-66384
CVE-2022-0995
Linux|Kernel
https://nvd.nist.gov/vuln/detail/CVE-2022-0995
CVE-2026-53362
Linux|Kernel
https://git.kernel.org/stable/c/14200d435af9a9eeb444f529fc2f689a236b7962
https://git.kernel.org/stable/c/65fb14cbebb0cd0eff903a22d33537ddc8b95769
https://git.kernel.org/stable/c/46f201f8b4c39633a1fa3dc12459f506d470993d
https://git.kernel.org/stable/c/6374fb9edf72c67a118a2c214a0dddd04c921e0a
https://git.kernel.org/stable/c/e9eacf19281ea2498b36291b56c9606118c2d74e
https://git.kernel.org/stable/c/736b380e28d0480c7bc3e022f1950f31fe53a7c5
https://nvd.nist.gov/vuln/detail/CVE-2026-53362
CVE-2019-1068
Microsoft|SQL Server
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1068
https://nvd.nist.gov/vuln/detail/CVE-2019-1068
CVE-2026-21962
Oracle|HTTP Server and Oracle Weblogic Server Proxy Plug-in
https://www.oracle.com/security-s/cpujan2026.html
https://nvd.nist.gov/vuln/detail/CVE-2026-21962
CVE-2023-49105
ownCloud|ownCloud
https://owncloud.com/security-advisories/webdav-api-authentication-bypass-using-pre-signed-urls/
https://nvd.nist.gov/vuln/detail/CVE-2023-49105
CVE-2015-5287
Red Hat|Automatic Bug Reporting Tool
https://github.com/abrt/abrt/commit/3c1b60cfa62d39e5fff5a53a5bc53dae189e740e
https://nvd.nist.gov/vuln/detail/CVE-2015-5287
CVE-2015-3246
Red Hat|Libuser
