CISA's list that day
19 March 2025
On CISA added 3 vulnerabilities to its list of exploited vulnerabilities, in SAP NetWeaver, NAKIVO Backup and Replication and Edimax IC-7100 IP Camera. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2017-12637Directory Traversal | SAP NetWeaver | Patch this weekEPSS 0.95 | 0.95 | ||
| CVE-2024-48248Absolute Path Traversal | NAKIVO Backup and Replication | Patch this weekEPSS 0.94 | 0.94 | ||
| CVE-2025-1316OS Command Injection | Edimax IC-7100 IP Camera | Patch this weekEPSS 0.74 | 0.74 |
Other changes that day
- CVE-2024-4879 ServiceNow Utah, Vancouver, and Washington DC Now PlatformRenamed from Utah, Vancouver, and Washington DC Now to Utah, Vancouver, and Washington DC Now Platform. Edited: description.
- CVE-2024-5217 ServiceNow Utah, Vancouver, and Washington DC Now PlatformRenamed from Utah, Vancouver, and Washington DC Now to Utah, Vancouver, and Washington DC Now Platform.