Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Act 2 of Drive Capital – How Columbus Ventures Success After Split

Don’t ask the blue ski toll ruble, it’s a toll for you

Taiwan NSB warns the public about the risks of data reintroducing Tiktok, Waibo and Chinese ties

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » CISA adds Palo Alto Networks and Sonic Wall flaws to exploited vulnerabilities list
Identity

CISA adds Palo Alto Networks and Sonic Wall flaws to exploited vulnerabilities list

userBy userFebruary 19, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

February 19, 2025Ravi LakshmananThreat Intelligence/Vulnerability

The US Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday said it was a well-known Exploited Vulnerability (KEV) catalogue that was based on evidence of active exploitation. Added two security flaws that affect Palo Alto Networks and Sonic Wall Sonicos SLVPN.

The defects are listed below –

CVE-2025-0108 (CVSS score: 7.8) – Bypassing vulnerabilities in Palo Alto Networks PAN-OS Management Web Interface, network access to the management web interface to bypass required authentication, and erupting specific PHP -OS Management Web Interface Script CVE-2024-53704 (CVSS Score: 8.2) – Inappropriate Authentication Vulnerability in SSLVPN Authentication Mechanism that allows remote attackers to bypass authentication

Cybersecurity

Palo Alto Networks confirmed with Hacker News that it is observing an aggressive attempt at exploitation against CVE-2025-0108, and has chained it with other vulnerabilities like CVE-2024-9474. It states that access to unsecured parents who are not permitted or are not protected by unauthorized access can be enabled. Firewall.

“Palo Alto Networks observed an exploit attempt to check CVE-2024-9474 and CVE-2025-0111 and CVE-2025-0108.

Threat intelligence company Greynoise has actively utilized CVE-2025-0108 with as many as 25 malicious IP addresses, and has seen a surge in attacker activity 10 times since it was detected almost a week ago. He said. The top three sources of attack traffic are the US, Germany and the Netherlands.

Regarding CVE-2024-53704, cybersecurity company Arctic Wolf revealed that threat actors weaponized the flaws shortly after Bishop Fox (POC) became available.

In light of active exploitation, a Federal Civil Enforcement Division (FCEB) agency is required to fix vulnerabilities identified by March 11, 2025 and secure the network.

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleOver 150 fake killer whales stuck on a beach in Tasmania, Australia | Environment News
Next Article Spreading and Coexistence Partners for Introducing Secondary Abstractions in Decentralized Finance
user
  • Website

Related Posts

Taiwan NSB warns the public about the risks of data reintroducing Tiktok, Waibo and Chinese ties

July 5, 2025

The exposed JDWP interface leads to crypto mining, and Hpingbot targets DDO’s SSH

July 5, 2025

TwinH: A New Frontier in the Pursuit of Immortality?

July 4, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Act 2 of Drive Capital – How Columbus Ventures Success After Split

Don’t ask the blue ski toll ruble, it’s a toll for you

Taiwan NSB warns the public about the risks of data reintroducing Tiktok, Waibo and Chinese ties

The exposed JDWP interface leads to crypto mining, and Hpingbot targets DDO’s SSH

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

TwinH: A New Frontier in the Pursuit of Immortality?

Meta’s Secret Weapon: The Superintelligence Unit That Could Change Everything 

Unlocking the Power of Prediction: The Rise of Digital Twins in the IoT World

TwinH: Digital Human Twin Aims for Victory at Break the Gap 2025

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.