menu
techminis

A naukri.com initiative

google-web-stories
source image

Securityaffairs

2M

read

13

img
dot

Image Credit: Securityaffairs

U.S. CISA adds Microsoft Windows, Zyxel device flaws to its Known Exploited Vulnerabilities catalog

  • U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Windows, Zyxel device flaws to its Known Exploited Vulnerabilities catalog.
  • The vulnerabilities added to the catalog include Zyxel DSL CPE OS Command Injection and Microsoft Windows Ancillary Function Driver for WinSock Heap-Based Buffer Overflow.
  • The Zyxel flaw allows unauthenticated attackers to execute arbitrary commands, potentially leading to device takeover, data exfiltration, or network infiltration.
  • The two zero-day flaws in Microsoft Windows being actively exploited in the wild were addressed through security updates in February 2025.

Read Full Article

like

Like

For uninterrupted reading, download the app