CISA's list that day
9 June 2022
On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in SAP NetWeaver. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2016-2386SQL Injection | SAP NetWeaver | Patch this weekEPSS 0.72 | 0.72 | ||
| CVE-2016-2388Information Disclosure | SAP NetWeaver | Patch this weekEPSS 0.52 | 0.52 | ||
| CVE-2021-38163Unrestricted File Upload | SAP NetWeaver | Patch soon | 0.37 |
Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.