{"id":1588344,"date":"2025-03-20T21:34:57","date_gmt":"2025-03-20T23:34:57","guid":{"rendered":"https:\/\/teknomers.com\/fr\/la-cisa-ajoute-une-vulnerabilite-de-nakivo-au-catalogue-kev-au-milieu-de-lexploitation-active\/"},"modified":"2025-03-20T21:35:02","modified_gmt":"2025-03-20T23:35:02","slug":"la-cisa-ajoute-une-vulnerabilite-de-nakivo-au-catalogue-kev-au-milieu-de-lexploitation-active","status":"publish","type":"post","link":"https:\/\/teknomers.com\/fr\/la-cisa-ajoute-une-vulnerabilite-de-nakivo-au-catalogue-kev-au-milieu-de-lexploitation-active\/","title":{"rendered":"La CISA ajoute une vuln\u00e9rabilit\u00e9 de nakivo au catalogue KEV au milieu de l&#8217;exploitation active"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p><span class=\"p-author\"><i class=\"icon-font icon-calendar\">\ue802<\/i><span class=\"author\">20 mars 2025<\/span><i class=\"icon-font icon-user\">\ue804<\/i><span class=\"author\">Ravie Lakshmanan<\/span><\/span><span class=\"p-tags\">Cybers\u00e9curit\u00e9 \/ vuln\u00e9rabilit\u00e9<\/span><\/p>\n<\/div>\n<div id=\"articlebody\">\n<div class=\"separator\" style=\"clear: both;\"><a rel=\"nofollow\" href=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2025\/03\/La-CISA-ajoute-une-vulnerabilite-de-nakivo-au-catalogue-KEV.png\" style=\"display: block;  text-align: center; clear: left; float: left;\"><\/a><\/div>\n<p>L&#8217;Agence am\u00e9ricaine de s\u00e9curit\u00e9 de cybers\u00e9curit\u00e9 et d&#8217;infrastructure (CISA) a <a rel=\"noopener nofollow\" href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/03\/19\/cisa-adds-three-known-exploited-vulnerabilities-catalog\" target=\"_blank\">ajout\u00e9<\/a> Un d\u00e9faut de s\u00e9curit\u00e9 \u00e0 haute s\u00e9v\u00e9rit\u00e9 ayant un impact<a rel=\"noopener nofollow\" href=\"https:\/\/www.cisa.gov\/known-exploited-vulnerabilities-catalog\" target=\"_blank\">Kev<\/a>) Catalogue, citant des preuves d&#8217;exploitation active.<\/p>\n<p>La vuln\u00e9rabilit\u00e9 en question est CVE-2024-48248 (score CVSS: 8.6), un bogue de travers\u00e9e de chemin absolu qui pourrait permettre \u00e0 un attaquant non authentifi\u00e9 de lire des fichiers sur l&#8217;h\u00f4te cible, y compris des sensibles tels que &#8220;\/ etc \/ shadow&#8221; via le point de terminaison &#8220;\/ c \/ router&#8221;. Il affecte toutes les versions du logiciel avant la version 10.11.3.86570.<\/p>\n<p>&#8220;La sauvegarde et la r\u00e9plication de Nakivo contient une vuln\u00e9rabilit\u00e9 de travers\u00e9e de chemin absolu qui permet \u00e0 un attaquant de lire des fichiers arbitraires&#8221;, a d\u00e9clar\u00e9 CISA dans un avis.<\/p>\n<div class=\"dog_two clear\"><center class=\"cf\"><a rel=\"nofollow noopener sponsored\" href=\"https:\/\/thehackernews.uk\/cis-securesuite\" target=\"_blank\" title=\"Cybersecurity\"><img loading=\"lazy\" decoding=\"async\" class=\"lazyload\" alt=\"Cybers\u00e9curit\u00e9\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2025\/03\/1740818990_705_Mozilla-met-a-jour-les-termes-de-Firefox-apres-le.png\" width=\"727\" height=\"90\"\/><\/a><\/center><\/div>\n<p>L&#8217;exploitation r\u00e9ussie de la lacune pourrait permettre \u00e0 un adversaire de lire des donn\u00e9es sensibles, y compris des fichiers de configuration, des sauvegardes et des informations d&#8217;identification, qui pourraient ensuite agir comme un tremplin pour d&#8217;autres compromis.<\/p>\n<p>Il n&#8217;y a actuellement aucun d\u00e9tail sur la fa\u00e7on dont la vuln\u00e9rabilit\u00e9 est exploit\u00e9e dans la nature, mais le d\u00e9veloppement intervient apr\u00e8s Watchtowr Labs <a rel=\"noopener nofollow\" href=\"https:\/\/labs.watchtowr.com\/the-best-security-is-when-we-all-agree-to-keep-everything-secret-except-the-secrets-nakivo-backup-replication-cve-2024-48248\/\" target=\"_blank\">publi\u00e9<\/a> une preuve de concept (<a rel=\"noopener nofollow\" href=\"https:\/\/github.com\/watchtowrlabs\/nakivo-arbitrary-file-read-poc-CVE-2024-48248\/\" target=\"_blank\">POC<\/a>) exploiter vers la fin du mois dernier. Le probl\u00e8me a \u00e9t\u00e9 <a rel=\"noopener nofollow\" href=\"https:\/\/helpcenter.nakivo.com\/Release-Notes\/Content\/v11-Release-Notes\/v11.0-Release-Notes.htm\" target=\"_blank\">abord\u00e9<\/a> En novembre 2024 avec la version V11.0.0.88174.<\/p>\n<p>La soci\u00e9t\u00e9 de cybers\u00e9curit\u00e9 a en outre not\u00e9 que la vuln\u00e9rabilit\u00e9 de lecture de fichiers arbitraires non authentifi\u00e9e pouvait \u00eatre arm\u00e9e pour obtenir toutes les informations d&#8217;identification stock\u00e9es utilis\u00e9es par la solution cible NaKivo et h\u00e9berg\u00e9e dans la base de donn\u00e9es &#8220;Product01.h2.db&#8221;.<\/p>\n<p>Deux autres d\u00e9fauts sont \u00e9galement ajout\u00e9s au catalogue KEV &#8211;<\/p>\n<ul>\n<li><strong><a rel=\"noopener nofollow\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-1316\" target=\"_blank\">CVE-2025-1316<\/a><\/strong>  (Score CVSS: 9.3) &#8211; La cam\u00e9ra IP Edimax IC-7100 contient une vuln\u00e9rabilit\u00e9 d&#8217;injection de commande OS en raison d&#8217;une mauvaise d\u00e9sinfection des entr\u00e9es qui permet \u00e0 un attaquant d&#8217;atteindre l&#8217;ex\u00e9cution de code distant via des demandes sp\u00e9cialement con\u00e7ues (non corrig\u00e9 en raison de l&#8217;appareil atteignant la fin de vie)<\/li>\n<li><strong><a rel=\"noopener nofollow\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2017-12637\" target=\"_blank\">CVE-2017-12637<\/a><\/strong>  (Score CVSS: 7.5) &#8211; SAP NetWeaver Application Server (AS) Java contient un <a rel=\"noopener nofollow\" href=\"https:\/\/userapps.support.sap.com\/sap\/support\/knowledge\/en\/3476549\" target=\"_blank\">Vuln\u00e9rabilit\u00e9 de travers\u00e9e du r\u00e9pertoire<\/a> Dans Scheduler \/ UI \/ JS \/ FFFFFFFFFBCA41EB4 \/ UIUTILJavaScriptJS qui permet \u00e0 un attaquant distant de lire des fichiers arbitraires via un .. (point de point) dans la cha\u00eene de requ\u00eate<\/li>\n<\/ul>\n<div class=\"dog_two clear\"><center class=\"cf\"><a rel=\"nofollow noopener sponsored\" href=\"https:\/\/thehackernews.uk\/cloud-ai-d\" target=\"_blank\" title=\"Cybersecurity\"><img loading=\"lazy\" decoding=\"async\" class=\"lazyload\" alt=\"Cybers\u00e9curit\u00e9\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2025\/03\/VMware-Security-Flaws-exploite-dans-la-nature-BroadCom-publie.jpg\" width=\"727\" height=\"90\"\/><\/a><\/center><\/div>\n<p>La semaine derni\u00e8re, Akamai a r\u00e9v\u00e9l\u00e9 que CVE-2025-1316 est en cours d&#8217;armement par de mauvais acteurs pour cibler les cam\u00e9ras avec des informations d&#8217;identification par d\u00e9faut afin de d\u00e9ployer au moins deux variantes de botnet Mirai diff\u00e9rentes depuis mai 2024.<\/p>\n<p>\u00c0 la lumi\u00e8re de l&#8217;exploitation active, les agences f\u00e9d\u00e9rales de direction civile (FCEB) sont tenues d&#8217;appliquer les att\u00e9nuations n\u00e9cessaires d&#8217;ici le 9 avril 2025 pour s\u00e9curiser leurs r\u00e9seaux.<\/p>\n<p><\/p>\n<div class=\"cf note-b\">Vous avez trouv\u00e9 cet article int\u00e9ressant? Suivez-nous <a rel=\"noopener nofollow\" href=\"https:\/\/twitter.com\/thehackersnews\" target=\"_blank\">Gazouillement <i class=\"icon-font icon-twitter\">\uf099<\/i><\/a>  et <a rel=\"noopener nofollow\" href=\"https:\/\/www.linkedin.com\/company\/thehackernews\/\" target=\"_blank\">Liendin<\/a> Pour lire plus de contenu exclusif que nous publions.<\/div>\n<\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/><br \/>\n<br \/><a href=\"https:\/\/thehackernews.com\/2025\/03\/cisa-adds-nakivo-vulnerability-to-kev.html\" rel=\"nofollow noopener\" target=\"_blank\">ttn-fr-57<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\ue80220 mars 2025\ue804Ravie LakshmananCybers\u00e9curit\u00e9 \/ vuln\u00e9rabilit\u00e9 L&#8217;Agence am\u00e9ricaine de s\u00e9curit\u00e9 de cybers\u00e9curit\u00e9 et d&#8217;infrastructure (CISA) a ajout\u00e9 Un d\u00e9faut de s\u00e9curit\u00e9 \u00e0 haute s\u00e9v\u00e9rit\u00e9 ayant un impactKev) Catalogue, citant des preuves d&#8217;exploitation active. La vuln\u00e9rabilit\u00e9 en question est CVE-2024-48248 (score CVSS: 8.6), un bogue de travers\u00e9e de chemin absolu qui pourrait permettre \u00e0 un attaquant [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1588345,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[9261,274266,274265,12361,12364,4805,4168,79002,274264,4161,274263,6124,67979,14592,274267,1975,4160,288331,238617,246491,4172,79016,196,4166,3667,4164],"class_list":["post-1588344","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technologie","tag-active","tag-actualites-de-piratage","tag-actualites-des-pirates","tag-ajoute","tag-catalogue","tag-cisa","tag-comment-pirater","tag-cyber-security-news","tag-cyber-security-news-aujourdhui","tag-cyber-mises-a-jour","tag-cyber-nouvelles","tag-cyberattaques","tag-kev","tag-lexploitation","tag-malware-ransomware","tag-milieu","tag-mises-a-jour-de-la-cybersecurite","tag-nakivo","tag-securite-de-linformation","tag-securite-du-reseau","tag-securite-informatique","tag-the-hacker-news","tag-une","tag-violation-de-donnees","tag-vulnerabilite","tag-vulnerabilite-logicielle"],"_links":{"self":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/1588344","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/comments?post=1588344"}],"version-history":[{"count":0,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/1588344\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media\/1588345"}],"wp:attachment":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media?parent=1588344"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/categories?post=1588344"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/tags?post=1588344"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}