CISA added four vulnerabilities to its Known Exploited Vulnerabilities Catalog on September 22 after evidence of active exploitation. The agency’s alert identifies the additions as affecting Check Point products.

Organizations should treat KEV additions as prioritization signals: identify exposed and affected systems, apply vendor guidance, and document any risk-based exceptions. Security teams should also review logs and alerts around internet-facing management infrastructure.

Source: CISA alert.

By Allan