Tech

US government warns agencies to make sure their backups are safe from NAKIVO security issue

Share
Share


  • NAKIVO patched a high-severity flaw in November 2024
  • However CISA has now added it to KEV, signalling abuse in the wild
  • The bug can lead to remote code execution

The US Cybersecurity and Infrastructure Security Agency (CISA) added a NAKIVO bug to its Known Exploited Vulnerabilities (KEV) catalog, signaling in-the-wild abuse and giving government agencies a deadline to apply the provided patch.

The bug in question is tracked as CVE-2024-48248. It is an absolute path traversal vulnerability affecting the Backup & Replication software, in versions before 11.0.0.88174.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
OpenAI wins 0 mn contract with US military
Tech

OpenAI wins $200 mn contract with US military

Credit: Unsplash/CC0 Public Domain The US Department of Defense on Monday awarded...

Prompt training technique helps users speak AI’s language
Tech

Prompt training technique helps users speak AI’s language

Credit: Pixabay/CC0 Public Domain Today’s generative artificial intelligence models can create everything...

Hydrogen sourcing could make or break Romania’s green steel ambitions
Tech

Hydrogen sourcing could make or break Romania’s green steel ambitions

Credit: Pixabay/CC0 Public Domain A study from the Stockholm School of Economics...