diff --git a/known_exploited_vulnerabilities.json b/known_exploited_vulnerabilities.json index bead56a..5d85660 100644 --- a/known_exploited_vulnerabilities.json +++ b/known_exploited_vulnerabilities.json @@ -1,9 +1,24 @@ { "title": "CISA Catalog of Known Exploited Vulnerabilities", - "catalogVersion": "2024.12.18", - "dateReleased": "2024-12-18T17:28:24.7207Z", - "count": 1236, + "catalogVersion": "2024.12.19", + "dateReleased": "2024-12-19T20:30:05.2063Z", + "count": 1237, "vulnerabilities": [ + { + "cveID": "CVE-2024-12356", + "vendorProject": "BeyondTrust", + "product": "Privileged Remote Access (PRA) and Remote Support (RS) ", + "vulnerabilityName": "BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) Command Injection Vulnerability ", + "dateAdded": "2024-12-19", + "shortDescription": "BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) contain a command injection vulnerability, which can allow an unauthenticated attacker to inject commands that are run as a site user. ", + "requiredAction": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.", + "dueDate": "2024-12-27", + "knownRansomwareCampaignUse": "Unknown", + "notes": "https:\/\/www.beyondtrust.com\/trust-center\/security-advisories\/bt24-10 ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2024-12356", + "cwes": [ + "CWE-77" + ] + }, { "cveID": "CVE-2021-40407", "vendorProject": "Reolink", @@ -59,7 +74,7 @@ "requiredAction": "The impacted product is end-of-life (EoL) and\/or end-of-service (EoS). Users should discontinue utilization of the product.", "dueDate": "2025-01-08", "knownRansomwareCampaignUse": "Unknown", - "notes": "https:\/\/nuuo.com\/wp-content\/uploads\/2023\/03\/NUUO-EOL-letter\uff3fNVRmini-2-and-NVRsolo-series.pdf ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2018-14933", + "notes": "https:\/\/nuuo.com\/wp-content\/uploads\/2023\/03\/NUUO-EOL-letter%EF%BC%BFNVRmini-2-and-NVRsolo-series.pdf ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2018-14933", "cwes": [ "CWE-78" ]