Posting Date: 2026/09/30
【Vulnerability Alert】CISA Adds 7 Known Exploited Vulnerabilities to KEV Catalog (2026/09/14-2026/09/20)
- Subject:【Vulnerability Alert】CISA Adds 7 Known Exploited Vulnerabilities to KEV Catalog (2026/09/14-2026/09/20)
- Description:
- Forwarded Taiwan Computer Network Crisis Handling and Coordination Center Cybersecurity Information Alert TWCERTCC-200-202609-00000022
- 【CVE-2026-76461】Cisco Secure Email Gateway SQL Injection Vulnerability (CVSS v3.1: 9.8)
- 【Exploited by Ransomware: Unknown】
- A SQL injection vulnerability exists in Cisco AsyncOS software for Cisco Secure Email Gateway. An unauthenticated remote attacker could exploit this vulnerability to execute arbitrary commands with root privileges on the underlying operating system.
- 【CVE-2026-58704】Google Pixel Improper Authorization Vulnerability (CVSS v3.1: 8.8)
- 【Exploited by Ransomware: Unknown】
- An improper authorization vulnerability exists in the cellular modem of Google Pixel devices. This logic error could allow an attacker to bypass permission checks and elevate privileges.
- 【CVE-2026-76460】Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability (CVSS v3.1: 10.0)
- 【Exploited by Ransomware: Unknown】
- An incorrect use of privileged APIs vulnerability exists in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC), which could allow an unauthenticated remote attacker to bypass the web management interface and gain unauthorized access to affected devices.
- 【CVE-2026-87886】Acronis Backup Incorrect Default Permissions Vulnerability (CVSS v3.1: 7.8)
- 【Exploited by Ransomware: Unknown】
- An incorrect default permissions vulnerability exists in the cPanel & WHM plugin and Plesk extension of Acronis Backup, which could lead to privilege escalation.
- 【CVE-2025-39964】Linux Kernel Race Condition Vulnerability (CVSS v3.1: 7.8)
- 【Exploited by Ransomware: Unknown】
- A race condition vulnerability exists in the Linux Kernel, allowing parallel writes to the same AF_ALG socket, which can cause data to interleave in unexpected ways and result in inconsistent internal socket state.
- 【CVE-2026-53266】Linux Kernel Out-of-Bounds Write Vulnerability (CVSS v3.1: 8.8)
- 【Exploited by Ransomware: Unknown】
- An out-of-bounds write vulnerability exists in the ebtables SNAT target of the Linux Kernel. This vulnerability allows rewriting the ARP sender hardware address by directly writing into nonlinear socket buffer fragments backed by file pages imported via splice. Affected products may have reached end of life (EoL) or end of service (EoS); users are advised to discontinue use of affected products or migrate to supported versions.
- 【CVE-2025-39682】Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability (CVSS v3.1: 9.8)
- 【Exploited by Ransomware: Unknown】
- An improper check for unusual or exceptional conditions vulnerability exists in the TLS receive path of the Linux Kernel, allowing zero-length records retrieved from rx\_list to bypass the expected recvmsg() record type handling mechanism, which may cause subsequent TLS records to be processed with incorrect zero-copy and queuing assumptions. Affected products may have reached end of life (EoL) or end of service (EoS); users are advised to discontinue use of affected products or migrate to supported versions.
- Affected Platforms:
- 【CVE-2026-76461】Refer to the officially listed affected versions
- 【CVE-2026-58704】Refer to the officially listed affected versions
- 【CVE-2026-76460】Refer to the officially listed affected versions
- 【CVE-2026-87886】Refer to the officially listed affected versions
- 【CVE-2025-39964】Refer to the officially listed affected versions
- 【CVE-2026-53266】Refer to the officially listed affected versions
- 【CVE-2025-39682】Refer to the officially listed affected versions
- Recommended Actions:
- 【CVE-2026-76461】 The vendor has released a fix for this vulnerability; please update to the relevant version https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX
- 【CVE-2026-58704】 The vendor has released a fix for this vulnerability; please update to the relevant version https://source.android.com/docs/security/bulletin/pixel/2026/2026-09-01
- 【CVE-2026-76460】 The vendor has released a fix for this vulnerability; please update to the relevant version https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ISE-ABP-VNSW7Tn5
- 【CVE-2026-87886】 The vendor has released a fix for this vulnerability; please update to the relevant version https://security-advisory.acronis.com/advisories/SEC-10986
- 【CVE-2025-39964】 The vendor has released a fix for this vulnerability; please update to the relevant version https://lore.kernel.org/linux-cve-announce/2025101334-CVE-2025-39964-7964@gregkh/
- 【CVE-2026-53266】 The vendor has released a fix for this vulnerability; please update to the relevant version https://lore.kernel.org/linux-cve-announce/2026062517-CVE-2026-53266-6162@gregkh/
- 【CVE-2025-39682】 The vendor has released a fix for this vulnerability; please update to the relevant version https://lore.kernel.org/linux-cve-announce/2025090545-CVE-2025-39682-ddab@gregkh/
- References:
Computer and Communication Center
Network System Division