CISA's list that day
11 July 2023
On CISA added 5 vulnerabilities to its list of exploited vulnerabilities, in Netwrix Auditor, Microsoft Windows and Microsoft Outlook. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2023-36874Error Reporting Service Privilege Escalation | Microsoft Windows | Patch this weekMetasploit module | 0.43 | ||
| CVE-2022-31199Insecure Object Deserialization | Netwrix Auditor | Patch this weekRansomware use | 0.36 | ||
| CVE-2023-35311Security Feature Bypass | Microsoft Outlook | Patch soon | 0.16 | ||
| CVE-2023-32046MSHTML Platform Privilege Escalation | Microsoft Windows | Patch soon | 0.10 | ||
| CVE-2023-32049Defender SmartScreen Security Feature Bypass | Microsoft Windows | Patch soon | 0.04 |
Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.