按 Enter 到中央內容區塊
:::

TWCERT/CC台灣電腦網路危機處理暨協調中心|企業資安通報協處|資安情資分享|漏洞通報|資安聯盟|資安電子報

:::

8/24至8/30 Known Exploited Vulnerabilities Catalog(KEV)週報

發布日期:
字型大小:
  • 發布單位:TWCERT/CC
  • 更新日期:2026-09-04
  • 點閱次數:27
  • 內容說明

CISA於8/24至8/30在Known Exploited Vulnerabilities Catalog(KEV)中發布11個已遭駭客利用之漏洞。

  • 影響平台

Ajax.NET Professional|Ajax.NET Professional

Citrix|NetScaler ADC and NetScaler Gateway

Gitea|Gitea

JFrog|Artifactory

Linux|Kernel

Microsoft|SQL Server

Oracle|HTTP Server and Oracle Weblogic Server Proxy Plug-in

ownCloud|ownCloud

Red Hat|Automatic Bug Reporting Tool

Red Hat|Libuser

  • 處置建議

修補說明請參考以下官方連結:

CVE-2021-23758

Ajax.NET Professional|Ajax.NET Professional

https://github.com/michaelschwarz/Ajax.NET-Professional/commit/b0e63be5f0bb20dfce507cb8a1a9568f6e73de57

https://nvd.nist.gov/vuln/detail/CVE-2021-23758

CVE-2026-8452

Citrix|NetScaler ADC and NetScaler Gateway

https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696604

https://nvd.nist.gov/vuln/detail/CVE-2026-8452

CVE-2026-60004

Gitea|Gitea

https://github.com/go-gitea/gitea/security/advisories/GHSA-rcr6-4jqh-j84m

https://nvd.nist.gov/vuln/detail/CVE-2026-60004

CVE-2026-66384

JFrog|Artifactory

https://docs.jfrog.com/releases/docs/jfrog-security-advisories

https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases

https://nvd.nist.gov/vuln/detail/CVE-2026-66384

CVE-2022-0995

Linux|Kernel

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=93ce93587d36493f2f86921fa79921b3cba63fbb

https://nvd.nist.gov/vuln/detail/CVE-2022-0995

CVE-2026-53362

Linux|Kernel

https://git.kernel.org/stable/c/14200d435af9a9eeb444f529fc2f689a236b7962

https://git.kernel.org/stable/c/65fb14cbebb0cd0eff903a22d33537ddc8b95769

https://git.kernel.org/stable/c/46f201f8b4c39633a1fa3dc12459f506d470993d

https://git.kernel.org/stable/c/6374fb9edf72c67a118a2c214a0dddd04c921e0a

https://git.kernel.org/stable/c/e9eacf19281ea2498b36291b56c9606118c2d74e

https://git.kernel.org/stable/c/736b380e28d0480c7bc3e022f1950f31fe53a7c5

https://nvd.nist.gov/vuln/detail/CVE-2026-53362

CVE-2019-1068

Microsoft|SQL Server

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1068

https://nvd.nist.gov/vuln/detail/CVE-2019-1068

CVE-2026-21962

Oracle|HTTP Server and Oracle Weblogic Server Proxy Plug-in

https://www.oracle.com/security-s/cpujan2026.html

https://nvd.nist.gov/vuln/detail/CVE-2026-21962

CVE-2023-49105

ownCloud|ownCloud

https://owncloud.org/security

https://owncloud.com/security-advisories/webdav-api-authentication-bypass-using-pre-signed-urls/

https://nvd.nist.gov/vuln/detail/CVE-2023-49105

CVE-2015-5287

Red Hat|Automatic Bug Reporting Tool

https://github.com/abrt/abrt/commit/3c1b60cfa62d39e5fff5a53a5bc53dae189e740e

https://nvd.nist.gov/vuln/detail/CVE-2015-5287

CVE-2015-3246

Red Hat|Libuser

https://access.redhat.com/articles/1537873

https://nvd.nist.gov/vuln/detail/CVE-2015-3246

回頁首