1/13至1/19 Known Exploited Vulnerabilities Catalog(KEV)週報
- 發布單位:TWCERT/CC
- 更新日期:2025-01-22
- 點閱次數:577
- 內容說明:
CISA於1/13至1/19在Known Exploited Vulnerabilities Catalog(KEV)中發布7個已遭駭客利用之漏洞。
- 影響平台:
Aviatrix|Controllers
Microsoft|Windows
Fortinet|FortiOS
Qlik|Sense
BeyondTrust|Privileged Remote Access (PRA) and Remote Support (RS)
- 處置建議:
Aviatrix|Controllers
Microsoft|Windows
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2025-21333
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2025-21334
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2025-21335
Fortinet|FortiOS
https://fortiguard.fortinet.com/psirt/FG-IR-24-535
Qlik|Sense
BeyondTrust|Privileged Remote Access (PRA) and Remote Support (RS)
https://www.beyondtrust.com/trust-center/security-advisories/bt24-11
- CVE編號:
CVE-2023-48365
CVE-2024-12686
CVE-2024-50603
CVE-2024-55591
CVE-2025-21333
CVE-2025-21334
CVE-2025-21335
相關連結
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- https://nvd.nist.gov/vuln/detail/CVE-2023-48365
- https://nvd.nist.gov/vuln/detail/CVE-2024-12686
- https://nvd.nist.gov/vuln/detail/CVE-2024-50603
- https://nvd.nist.gov/vuln/detail/CVE-2024-55591
- https://nvd.nist.gov/vuln/detail/CVE-2025-21333
- https://nvd.nist.gov/vuln/detail/CVE-2025-21334
- https://nvd.nist.gov/vuln/detail/CVE-2025-21335
