CVE-2022-39197
CISA 기관 조치 기한: 2023-04-20
Fortra Cobalt Strike
Fortra Cobalt Strike contains a cross-site scripting (XSS) vulnerability in Teamserver that would allow an attacker to set a malformed username in the Beacon configuration, allowing them to execute code remotely.
KEV 필수 조치: Apply updates per vendor instructions.