Nov. 14, 2023, 9:07 p.m. | SC Staff

SC Magazine feed for Policy www.scmagazine.com

Ongoing remote code execution attacks leveraging four Juniper J-Web interface vulnerabilities, tracked from CVE-2023-36844 to CVE-2023-36847, in a pre-auth exploit chain have led to their inclusion in the Cybersecurity and Infrastructure Security Agency's Known Exploited Vulnerabilities catalog, BleepingComputer reports.

agency attacks auth bleepingcomputer catalog code code execution cve cve-2023-36844 cybersecurity exploit exploit chain exploited exploited vulnerabilities governance risk and compliance inclusion infrastructure infrastructure security interface juniper kev kev catalog known exploited known exploited vulnerabilities known exploited vulnerabilities catalog led patchconfiguration-management remote code remote code execution reports security vulnerabilities vulnerability management web web interface

Security Specialist

@ Protect Democracy | Remote, US

Experienced Security Compliance - HITRUST

@ Gainwell Technologies | Any city, TX, US, 99999

24 x 7 Security Analyst

@ LRQA | Birmingham, GB, B37 7ES

Associate Information Security Governance - #catalystWSP

@ Singtel | Singapore, Singapore

Security Consulting and Risk Officer

@ Metrobank | Taguig, Philippines

Security Threat Analyst

@ Metrobank | Taguig, Philippines