Enterprise IT Support β€’ Bangkok & Nationwide

Technology newsroom

Urgent! CISA Orders Immediate Patch for Critical Microsoft, VMware, Apple Vulnerabilities Already Under Attack 🚨

CISA has issued an urgent alert, ordering immediate patching for critical vulnerabilities in Microsoft, VMware, and Apple products, after discovering they are already being actively exploited by attackers, leading to severe impacts including system compromise.

Edited by SyncTech Solution Published Source Original source
Urgent! CISA Orders Immediate Patch for Critical Microsoft, VMware, Apple Vulnerabilities Already Under Attack 🚨

πŸ“Œ Key Highlights:
- CISA has added vulnerabilities from Microsoft, VMware, and Apple to its KEV catalog, indicating that these vulnerabilities are actively being exploited.
- The impact is severe, ranging from remote code execution (RCE) and authentication bypass to full system compromise.
- System administrators and general users should update security patches urgently to prevent potential damage.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning, adding four new security vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog. This catalog lists vulnerabilities that are actively being exploited by attackers on a widespread scale, prompting organizations to be vigilant and take immediate corrective action.

The inclusion of a vulnerability in the KEV catalog signifies that the threat is no longer theoretical but a real and ongoing danger causing damage. CISA mandates that U.S. federal agencies must update patches to close these vulnerabilities by a specified deadline, a recommendation that is equally crucial for private sector organizations and general users.

🚨 The vulnerabilities added this time include:
- Microsoft Office (CVE-2024-21413): A critical vulnerability that allows attackers to send malicious files to bypass the Protected View feature and achieve remote code execution (RCE). This is considered an extremely dangerous vulnerability.
- Microsoft SharePoint Server (CVE-2024-21371): A vulnerability that enables attackers to create malicious commands on the server, potentially leading to the theft of critical data or system compromise.
- VMware vCenter Server (CVE-2023-34048): An out-of-bounds write vulnerability in the DCERPC protocol of vCenter Server, allowing network-accessible attackers to send specially crafted packets to achieve remote code execution without authentication.
- Apple (CVE-2024-23222): A zero-day vulnerability affecting numerous Apple devices, including iOS, iPadOS, macOS, and watchOS. This vulnerability is within WebKit, allowing attackers to execute arbitrary code on victims' devices.

Immediate security patch updates are therefore essential for all system administrators and users to prevent falling victim to attacks exploiting these vulnerabilities, which could lead to severe damage to organizational data and systems.

πŸ’¬ Has your organization checked and updated patches for these vulnerabilities? Feel free to share your status.

Let’s build what’s next

Better IT starts with understanding your business.

Tell our engineers what you need and receive an initial recommendation at no cost.