[Vulnerability Alert] CISA Adds 6 Known Exploited Vulnerabilities to KEV Catalog (2025/10/13-2025/10/19)
Subject: [Vulnerability Alert] CISA Adds 6 Known Exploited Vulnerabilities to KEV Catalog (2025/10/13-2025/10/19)
Content:
Forwarded from Taiwan Computer Network Emergency Response Team/Coordination Center TWCERTCC-200-202510-00000011
[CVE-2025-47827] IGEL OS Use of a Key Past its Expiration Date Vulnerability (CVSS v3.1: 4.6)
[Exploited by Ransomware: Unknown] IGEL OS has a security feature bypass vulnerability because the igel-flash-driver module does not correctly validate cryptographic signatures, allowing an attacker to bypass the secure boot mechanism and mount a specially crafted root file system from an unverified SquashFS image.
[Affected Platforms] Please refer to the affected versions listed by the vendor
[CVE-2025-24990] Microsoft Windows Untrusted Pointer Dereference Vulnerability (CVSS v3.1: 7.8)
[Exploited by Ransomware: Unknown] Microsoft Windows Kernel-level Untrusted Pointer Dereference vulnerability, which may lead to local privilege escalation.
[Affected Platforms] Please refer to the affected versions listed by the vendor
[CVE-2025-6264] Velociraptor API Improper Access Control Vulnerability (CVSS v3.1: 9.8)
[Exploited by Ransomware: Unknown] Velociraptor API has an Improper Access Control vulnerability, allowing an unauthenticated remote attacker to access the API port via HTTP and execute arbitrary code as an administrator.
[Affected Platforms] Please refer to the affected versions listed by the vendor
[Exploited by Ransomware: Unknown] SKYSEA Client View has an Improper Authentication vulnerability. An attacker can achieve remote code execution through an authentication processing flaw during a TCP connection with the Management Console program.
[Affected Platforms] Please refer to the affected versions listed by the vendor
[CVE-2025-42937] SAP Print Service Directory Traversal Vulnerability (CVSS v3.1: 9.8)
[Exploited by Ransomware: Unknown] SAP Print Service has a Directory Traversal vulnerability, allowing an unauthenticated attacker to traverse directories and overwrite system files.
[Affected Platforms] Please refer to the affected versions listed by the vendor