Skip to content

Commit 3b87cd5

Browse files
Update KEV: Sat Jun 21 00:13:04 UTC 2025
Signed-off-by: AboutCode Automation <[email protected]>
1 parent 028a362 commit 3b87cd5

File tree

1 file changed

+7
-7
lines changed

1 file changed

+7
-7
lines changed

known_exploited_vulnerabilities.json

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"title": "CISA Catalog of Known Exploited Vulnerabilities",
3-
"catalogVersion": "2025.06.17",
4-
"dateReleased": "2025-06-17T17:00:46.2025Z",
3+
"catalogVersion": "2025.06.20",
4+
"dateReleased": "2025-06-20T15:54:44.9005Z",
55
"count": 1367,
66
"vulnerabilities": [
77
{
@@ -49,15 +49,15 @@
4949
},
5050
{
5151
"cveID": "CVE-2025-33053",
52-
"vendorProject": "Web Distributed Authoring and Versioning",
53-
"product": "Web Distributed Authoring and Versioning (WebDAV)",
54-
"vulnerabilityName": "Web Distributed Authoring and Versioning (WebDAV) External Control of File Name or Path Vulnerability",
52+
"vendorProject": "Microsoft",
53+
"product": "Windows",
54+
"vulnerabilityName": " Microsoft Windows External Control of File Name or Path Vulnerability",
5555
"dateAdded": "2025-06-10",
56-
"shortDescription": "Web Distributed Authoring and Versioning (WebDAV) contains an external control of file name or path vulnerability. This vulnerability could allow an unauthorized attacker to execute code over a network. This vulnerability could affect various products that implement WebDAV, including but not limited to Microsoft Windows.",
56+
"shortDescription": "Microsoft Windows contains an external control of file name or path vulnerability that could allow an attacker to execute code from a remote WebDAV location specified by the WorkingDirectory attribute of Internet Shortcut files.",
5757
"requiredAction": "Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.",
5858
"dueDate": "2025-07-01",
5959
"knownRansomwareCampaignUse": "Unknown",
60-
"notes": "This vulnerability affects a common open-source project, third-party library, or a protocol used by different products. For more information, please see: https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2025-33053 ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-33053",
60+
"notes": "https:\/\/msrc.microsoft.com\/update-guide\/en-US\/vulnerability\/CVE-2025-33053 ; https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-33053",
6161
"cwes": [
6262
"CWE-73"
6363
]

0 commit comments

Comments
 (0)