Fact-check: The article cites an official CISA source and aligns with their standard practices for adding vulnerabilities to the Known Exploited Vulnerabilities catalog, which is part of the Critical Infrastructure situation. CVE-2023-52163 and Binding Operational Directive 22-01 are verifiable elements based on CISA's operations. No contradictions were found in verified reporting or on X.
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added CVE-2023-52163, a Missing Authorization vulnerability in the Digiever DS-2105 Pro, to its Known Exploited Vulnerabilities catalog based on evidence of active exploitation. The agency urges all organizations to prioritize timely remediation of KEV catalog vulnerabilities, while federal civilian agencies are required to patch by a set due date under Binding Operational Directive 22-01.