Tech & Gadgets

US government agencies were told to fix these critical security holes or they would be attacked


  • CISA adds CVE-2023-28461 to its catalog of known exploited vulnerabilities
  • Federal agencies have until December 16 to resolve the issues
  • The bug is being exploited by a Chinese group known as Earth Kasha

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a new critical vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, warning federal agencies that they have a three-week deadline to apply the available patch, or eliminate it altogether. stop using the affected software.

The agency added a missing authentication vulnerability to KEV that is tracked under CVE-2023-28461, which has a severity score of 9.8 and allows crooks to execute arbitrary code on remote devices.

Related Articles

Leave a Reply

Your email address will not be published. Required fields are marked *

Back to top button