Tech

CISA says Oracle and Mitel have critical security flaws being exploited

Share
Share


  • CISA addS three new bugs to KEV – two in Mitel’s MiCollab, and one in Oracle WebLogic Server
  • The bugs allowed crooks to read sensitive files and take over vulnerable endpoints
  • Federal agencies have until late January 2025 to deploy the patch

The US Cybersecurity and Infrastructure Security Agency (CISA) HAS added three new flaws to its Exploited Vulnerabilities Catalog (KEV), signalling in-the-wild abuse, and giving federal agencies a deadline to patch things up.

Two of the three flaws are found in Mitel’s MiCollab unified communications platform. One is a critical path traversal vulnerability, tracked as CVE-2024-41713.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
High-voltage CMOS backplane developed for very bright OLED microdisplays
Tech

High-voltage CMOS backplane developed for very bright OLED microdisplays

0.62-Inch SXGA High-Voltage CMOS Backplane with OLED. A common method to increase...

A newly developed fast and flexible CPU notification requires no polling
Tech

A newly developed fast and flexible CPU notification requires no polling

Kazem Taram, assistant professor of computer science, discusses research with PhD student...

ChatGPT news just got a major upgrade from The Washington Post
Tech

ChatGPT news just got a major upgrade from The Washington Post

ChatGPT will now use The Washington Post to provide answers using the...