CISA's list that day
13 November 2023
On CISA added 6 vulnerabilities to its list of exploited vulnerabilities, in Juniper Junos OS and SysAid Server. The US federal deadlines run from to .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2023-36845EX Series and SRX Series PHP External Variable Modification | Juniper Junos OS | Patch this weekMetasploit module; EPSS 0.95 | 0.95 | ||
| CVE-2023-36844EX Series PHP External Variable Modification | Juniper Junos OS | Patch this weekEPSS 0.90 | 0.90 | ||
| CVE-2023-36846SRX Series Missing Authentication for Critical Function | Juniper Junos OS | Patch this weekEPSS 0.93 | 0.93 | ||
| CVE-2023-36847EX Series Missing Authentication for Critical Function | Juniper Junos OS | Patch this weekEPSS 0.83 | 0.83 | ||
| CVE-2023-47246Path Traversal | SysAid SysAid Server | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| CVE-2023-36851SRX Series Missing Authentication for Critical Function | Juniper Junos OS | Patch soon | 0.01 |
Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.