CISA's list that day

10 March 2025

On CISA added 5 vulnerabilities to its list of exploited vulnerabilities, in Ivanti Endpoint Manager (EPM) and Advantive VeraCore. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-13159Absolute Path TraversalIvanti Endpoint Manager (EPM)Patch this weekEPSS 0.990.99
CVE-2024-13160Absolute Path TraversalIvanti Endpoint Manager (EPM)Patch this weekEPSS 0.910.91
CVE-2024-13161Absolute Path TraversalIvanti Endpoint Manager (EPM)Patch this weekEPSS 0.900.90
CVE-2025-25181SQL InjectionAdvantive VeraCorePatch this weekEPSS 0.560.56
CVE-2024-57968Unrestricted File UploadAdvantive VeraCorePatch soon0.32

Other changes that day

  1. CVE-2025-22225 VMware ESXiEdited: weakness list.