The Nimble Nerd white logo

New Cyber Threats Unveiled: CISA Adds Trio of Vulnerabilities to Exploited List

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog, featuring two Draytek VigorConnect issues and one Kingsoft WPS Office flaw. BOD 22-01 urges federal agencies to fix these vulnerabilities promptly to thwart cyber threats. Prioritize timely remediation to keep those pesky cyber…

Hot Take:

Looks like the cybersecurity world just added a few more entries to its “naughty list.” With these new vulnerabilities, it’s safe to say that hackers are having their own version of Christmas come early!

Key Points:

  • Three new vulnerabilities added to CISA’s Known Exploited Vulnerabilities Catalog.
  • Includes two Draytek VigorConnect Path Traversal Vulnerabilities and one Kingsoft WPS Office Path Traversal Vulnerability.
  • These vulnerabilities are frequent attack vectors for malicious cyber actors.
  • Binding Operational Directive 22-01 mandates remediation of these vulnerabilities for Federal Civilian Executive Branch agencies.
  • CISA encourages all organizations to prioritize timely remediation of these vulnerabilities.

Membership Required

 You must be a member to access this content.

View Membership Levels