Authoritative signal

Known exploited

The current CISA KEV catalog, bound to the active generation and ordered by catalog date and CASCA priority.

As known Jul 19, 2026, 5:00 AM UTCgen-56ccdaf9
KEV JSON is authoritativeCatalog absence remains unknown; CSV is serialization-only and never an independent vote.1,647 catalog members · showing 601650
601

Qualcomm Multiple Chipsets Use of Out-of-Range Pointer Offset Vulnerability

Multiple Qualcomm chipsets contain a use of out-of-range pointer offset vulnerability due to memory corruption in Graphics while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.

QualcommMultiple Chipsets

Required actionApply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.

Added
2023-12-05
Due
2023-12-26
Priority interval
61.377.8
Coverage
85%
602
CVE-2022-22071CISA KEVConflicting evidence

Qualcomm Multiple Chipsets Use-After-Free Vulnerability

Multiple Qualcomm chipsets contain a use-after-free vulnerability when process shell memory is freed using IOCTL munmap call and process initialization is in progress.

QualcommMultiple Chipsets

Required actionApply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.

Added
2023-12-05
Due
2023-12-26
Priority interval
59.377.3
Coverage
73%
603

Qualcomm Multiple Chipsets Use-After-Free Vulnerability

Multiple Qualcomm chipsets contain a use-after-free vulnerability due to memory corruption in DSP Services during a remote call from HLOS to DSP.

QualcommMultiple Chipsets

Required actionApply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.

Added
2023-12-05
Due
2023-12-26
Priority interval
61.276.2
Coverage
85%
604

Apple Multiple Products WebKit Memory Corruption Vulnerability

Apple iOS, iPadOS, macOS, and Safari WebKit contain a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleMultiple Products

Required actionApply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.

Added
2023-12-04
Due
2023-12-25
Priority interval
68.183.1
Coverage
85%
605

Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability

Apple iOS, iPadOS, macOS, and Safari WebKit contain an out-of-bounds read vulnerability that may disclose sensitive information when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleMultiple Products

Required actionApply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.

Added
2023-12-04
Due
2023-12-25
Priority interval
64.779.7
Coverage
85%
606
CVE-2023-49103CISA KEVConflicting evidence

ownCloud graphapi Information Disclosure Vulnerability

ownCloud graphapi contains an information disclosure vulnerability that can reveal sensitive data stored in phpinfo() via GetPhpInfo.php, including administrative credentials.

ownCloudownCloud graphapi

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-30
Due
2023-12-21
Priority interval
76.597.7
Coverage
73%
607

Google Skia Integer Overflow Vulnerability

Google Chromium Skia contains an integer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a malicious file. This vulnerability affects Google Chrome and ChromeOS, Android, Flutter, and possibly other products.

GoogleChromium Skia

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-30
Due
2023-12-21
Priority interval
72.987.9
Coverage
85%
608

GNU C Library Buffer Overflow Vulnerability

GNU C Library's dynamic loader ld.so contains a buffer overflow vulnerability when processing the GLIBC_TUNABLES environment variable, allowing a local attacker to execute code with elevated privileges.

GNUGNU C Library

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-21
Due
2023-12-12
Priority interval
77.592.5
Coverage
85%
609

Sophos Web Appliance Command Injection Vulnerability

Sophos Web Appliance contains a command injection vulnerability in the warn-proceed handler that allows for remote code execution.

SophosWeb Appliance

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-16
Due
2023-12-07
Priority interval
84.599.5
Coverage
85%
610
CVE-2020-2551CISA KEVConflicting evidence

Oracle Fusion Middleware Unspecified Vulnerability

Oracle Fusion Middleware contains an unspecified vulnerability in the WLS Core Components that allows an unauthenticated attacker with network access via IIOP to compromise the WebLogic Server.

OracleFusion Middleware

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-16
Due
2023-12-07
Priority interval
78.198.8
Coverage
73%
611

Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability

Microsoft Windows Mark of the Web (MOTW) contains a security feature bypass vulnerability resulting in a limited loss of integrity and availability of security features.

MicrosoftWindows

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-16
Due
2023-12-07
Priority interval
57.072.0
Coverage
85%
612

Microsoft Windows SmartScreen Security Feature Bypass Vulnerability

Microsoft Windows SmartScreen contains a security feature bypass vulnerability that could allow an attacker to bypass Windows Defender SmartScreen checks and their associated prompts.

MicrosoftWindows

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-14
Due
2023-12-05
Priority interval
80.895.8
Coverage
85%
613

Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability

Microsoft Windows Cloud Files Mini Filter Driver contains a privilege escalation vulnerability that could allow an attacker to gain SYSTEM privileges.

MicrosoftWindows

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-14
Due
2023-12-05
Priority interval
67.782.7
Coverage
85%
614

Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability

Microsoft Windows Desktop Window Manager (DWM) Core Library contains an unspecified vulnerability that allows for privilege escalation.

MicrosoftWindows

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-14
Due
2023-12-05
Priority interval
66.481.4
Coverage
85%
615
CVE-2023-47246CISA KEVKnown ransomware

SysAid Server Path Traversal Vulnerability

SysAid Server (on-premises version) contains a path traversal vulnerability that leads to code execution.

SysAidSysAid Server

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-13
Due
2023-12-04
Priority interval
84.499.4
Coverage
85%
616

Juniper Junos OS EX Series and SRX Series PHP External Variable Modification Vulnerability

Juniper Junos OS on EX Series and SRX Series contains a PHP external variable modification vulnerability that allows an unauthenticated, network-based attacker to control an important environment variable. Using a crafted request, which sets the variable PHPRC, an attacker is able to modify the PHP execution environment allowing the injection und execution of code.

JuniperJunos OS

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-13
Due
2023-11-17
Priority interval
83.898.8
Coverage
85%
617

Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability

Juniper Junos OS on SRX Series contains a missing authentication for critical function vulnerability that allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to user.php that doesn't require authentication, an attacker is able to upload arbitrary files via J-Web, leading to a loss of integrity for a certain part of the file system, which may allow chaining to other vulnerabilities.

JuniperJunos OS

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-13
Due
2023-11-17
Priority interval
72.787.7
Coverage
85%
618

Juniper Junos OS EX Series PHP External Variable Modification Vulnerability

Juniper Junos OS on EX Series contains a PHP external variable modification vulnerability that allows an unauthenticated, network-based attacker to control certain, important environment variables. Using a crafted request an attacker is able to modify certain PHP environment variables, leading to partial loss of integrity, which may allow chaining to other vulnerabilities.

JuniperJunos OS

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-13
Due
2023-11-17
Priority interval
72.387.3
Coverage
85%
619

Juniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability

Juniper Junos OS on EX Series contains a missing authentication for critical function vulnerability that allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to installAppPackage.php that doesn't require authentication, an attacker is able to upload arbitrary files via J-Web, leading to a loss of integrity for a certain part of the file system, which may allow chaining to other vulnerabilities.

JuniperJunos OS

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-13
Due
2023-11-17
Priority interval
71.786.7
Coverage
85%
620

Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability

Juniper Junos OS on SRX Series contains a missing authentication for critical function vulnerability that allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to webauth_operation.php that doesn't require authentication, an attacker is able to upload arbitrary files via J-Web, leading to a loss of integrity for a certain part of the file system, which may allow chaining to other vulnerabilities.

JuniperJunos OS

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-13
Due
2023-11-17
Priority interval
55.370.3
Coverage
85%
621

Service Location Protocol (SLP) Denial-of-Service Vulnerability

The Service Location Protocol (SLP) contains a denial-of-service (DoS) vulnerability that could allow an unauthenticated, remote attacker to register services and use spoofed UDP traffic to conduct a denial-of-service (DoS) attack with a significant amplification factor.

IETFService Location Protocol (SLP)

Required actionApply mitigations per vendor instructions or disable SLP service or port 427/UDP on all systems running on untrusted networks, including those directly connected to the Internet.

Added
2023-11-08
Due
2023-11-29
Priority interval
75.090.0
Coverage
85%
622
CVE-2023-22518CISA KEVKnown ransomware

Atlassian Confluence Data Center and Server Improper Authorization Vulnerability

Atlassian Confluence Data Center and Server contain an improper authorization vulnerability that can result in significant data loss when exploited by an unauthenticated attacker. There is no impact on confidentiality since the attacker cannot exfiltrate any data.

AtlassianConfluence Data Center and Server

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-07
Due
2023-11-28
Priority interval
84.5100.0
Coverage
85%
623
CVE-2023-46604CISA KEVKnown ransomware

Apache ActiveMQ Deserialization of Untrusted Data Vulnerability

Apache ActiveMQ contains a deserialization of untrusted data vulnerability that may allow a remote attacker with network access to a broker to run shell commands by manipulating serialized class types in the OpenWire protocol to cause the broker to instantiate any class on the classpath.

ApacheActiveMQ

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-11-02
Due
2023-11-23
Priority interval
84.5100.0
Coverage
85%
624
CVE-2023-46747CISA KEVKnown ransomware

F5 BIG-IP Configuration Utility Authentication Bypass Vulnerability

F5 BIG-IP Configuration utility contains an authentication bypass using an alternate path or channel vulnerability due to undisclosed requests that may allow an unauthenticated attacker with network access to the BIG-IP system through the management port and/or self IP addresses to execute system commands. This vulnerability can be used in conjunction with CVE-2023-46748.

F5BIG-IP Configuration Utility

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-31
Due
2023-11-21
Priority interval
84.199.1
Coverage
85%
625

F5 BIG-IP Configuration Utility SQL Injection Vulnerability

F5 BIG-IP Configuration utility contains an SQL injection vulnerability that may allow an authenticated attacker with network access through the BIG-IP management port and/or self IP addresses to execute system commands. This vulnerability can be used in conjunction with CVE-2023-46747.

F5BIG-IP Configuration Utility

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-31
Due
2023-11-21
Priority interval
66.281.2
Coverage
85%
626

Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability

Roundcube Webmail contains a persistent cross-site scripting (XSS) vulnerability that allows a remote attacker to run malicious JavaScript code.

RoundcubeWebmail

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-26
Due
2023-11-16
Priority interval
70.987.7
Coverage
85%
627

Cisco IOS XE Web UI Command Injection Vulnerability

Cisco IOS XE contains a command injection vulnerability in the web user interface. When chained with CVE-2023-20198, the attacker can leverage the new local user to elevate privilege to root and write the implant to the file system. Cisco identified CVE-2023-20273 as the vulnerability exploited to deploy the implant. CVE-2021-1435, previously associated with the exploitation events, is no longer believed to be related to this activity.

CiscoCisco IOS XE Web UI

Required actionVerify that instances of Cisco IOS XE Web UI are in compliance with BOD 23-02 and apply mitigations per vendor instructions. For affected products (Cisco IOS XE Web UI exposed to the internet or to untrusted networks), follow vendor instructions to determine if a system may have been compromised and immediately report positive findings to CISA.

Added
2023-10-23
Due
2023-10-27
Priority interval
76.991.9
Coverage
85%
628
CVE-2023-4966CISA KEVKnown ransomwareConflicting evidence

Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability

Citrix NetScaler ADC and NetScaler Gateway contain a buffer overflow vulnerability that allows for sensitive information disclosure when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.

CitrixNetScaler ADC and NetScaler Gateway

Required actionApply mitigations and kill all active and persistent sessions per vendor instructions [https://www.netscaler.com/blog/news/cve-2023-4966-critical-security-update-now-available-for-netscaler-adc-and-netscaler-gateway/] OR discontinue use of the product if mitigations are unavailable.

Added
2023-10-18
Due
2023-11-08
Priority interval
78.798.5
Coverage
73%
629

Cisco IOS XE Web UI Privilege Escalation Vulnerability

Cisco IOS XE Web UI contains a privilege escalation vulnerability in the web user interface that could allow a remote, unauthenticated attacker to create an account with privilege level 15 access. The attacker can then use that account to gain control of the affected device.

CiscoIOS XE Web UI

Required actionVerify that instances of Cisco IOS XE Web UI are in compliance with BOD 23-02 and apply mitigations per vendor instructions. For affected products (Cisco IOS XE Web UI exposed to the internet or to untrusted networks), follow vendor instructions to determine if a system may have been compromised and immediately report positive findings to CISA.

Added
2023-10-16
Due
2023-10-20
Priority interval
85.0100.0
Coverage
85%
630

HTTP/2 Rapid Reset Attack Vulnerability

HTTP/2 contains a rapid reset vulnerability that allows for a distributed denial-of-service attack (DDoS).

IETFHTTP/2

Required actionApply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Added
2023-10-10
Due
2023-10-31
Priority interval
78.793.7
Coverage
85%
631

Adobe Acrobat and Reader Use-After-Free Vulnerability

Adobe Acrobat and Reader contains a use-after-free vulnerability that allows for code execution in the context of the current user.

AdobeAcrobat and Reader

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-10
Due
2023-10-31
Priority interval
75.290.2
Coverage
85%
632

Microsoft Skype for Business Privilege Escalation Vulnerability

Microsoft Skype for Business contains an unspecified vulnerability that allows for privilege escalation.

MicrosoftSkype for Business

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-10
Due
2023-10-31
Priority interval
72.387.3
Coverage
85%
633
CVE-2023-36563CISA KEVConflicting evidence

Microsoft WordPad Information Disclosure Vulnerability

Microsoft WordPad contains an unspecified vulnerability that allows for information disclosure.

MicrosoftWordPad

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-10
Due
2023-10-31
Priority interval
62.980.4
Coverage
73%
634

Cisco IOS and IOS XE Group Encrypted Transport VPN Out-of-Bounds Write Vulnerability

Cisco IOS and IOS XE contain an out-of-bounds write vulnerability in the Group Encrypted Transport VPN (GET VPN) feature that could allow an authenticated, remote attacker who has administrative control of either a group member or a key server to execute malicious code or cause a device to crash.

CiscoIOS and IOS XE

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-10
Due
2023-10-31
Priority interval
59.674.6
Coverage
85%
635
CVE-2023-22515CISA KEVKnown ransomware

Atlassian Confluence Data Center and Server Broken Access Control Vulnerability

Atlassian Confluence Data Center and Server contains a broken access control vulnerability that allows an attacker to create unauthorized Confluence administrator accounts and access Confluence.

AtlassianConfluence Data Center and Server

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable. Check all affected Confluence instances for evidence of compromise per vendor instructions and report any positive findings to CISA.

Added
2023-10-05
Due
2023-10-13
Priority interval
84.499.9
Coverage
85%
636
CVE-2023-40044CISA KEVKnown ransomwareConflicting evidence

Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability

Progress WS_FTP Server contains a deserialization of untrusted data vulnerability in the Ad Hoc Transfer module that allows an authenticated attacker to execute remote commands on the underlying operating system.

ProgressWS_FTP Server

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-05
Due
2023-10-26
Priority interval
81.099.0
Coverage
73%
637

Apple iOS and iPadOS Kernel Privilege Escalation Vulnerability

Apple iOS and iPadOS contain an unspecified vulnerability that allows for local privilege escalation.

AppleiOS and iPadOS

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-05
Due
2023-10-26
Priority interval
61.476.4
Coverage
85%
638
CVE-2023-42793CISA KEVKnown ransomware

JetBrains TeamCity Authentication Bypass Vulnerability

JetBrains TeamCity contains an authentication bypass vulnerability that allows for remote code execution on TeamCity Server.

JetBrainsTeamCity

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-04
Due
2023-10-25
Priority interval
84.599.5
Coverage
85%
639

Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability

Microsoft Windows Cryptographic Next Generation (CNG) Key Isolation Service contains an unspecified vulnerability that allows an attacker to gain specific limited SYSTEM privileges.

MicrosoftWindows CNG Key Isolation Service

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-04
Due
2023-10-25
Priority interval
60.275.2
Coverage
85%
640

Arm Mali GPU Kernel Driver Use-After-Free Vulnerability

Arm Mali GPU Kernel Driver contains a use-after-free vulnerability that allows a local, non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.

ArmMali GPU Kernel Driver

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-03
Due
2023-10-24
Priority interval
56.171.1
Coverage
85%
641

Google Chromium libvpx Heap Buffer Overflow Vulnerability

Google Chromium libvpx contains a heap buffer overflow vulnerability in vp8 encoding that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could impact web browsers using libvpx, including but not limited to Google Chrome.

GoogleChromium libvpx

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-10-02
Due
2023-10-23
Priority interval
76.091.0
Coverage
85%
642
CVE-2018-14667CISA KEVConflicting evidence

Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability

Red Hat JBoss RichFaces Framework contains an expression language injection vulnerability via the UserResource resource. A remote, unauthenticated attacker could exploit this vulnerability to execute malicious code using a chain of Java serialized objects via org.ajax4jsf.resource.UserResource$UriData.

Red HatJBoss RichFaces Framework

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-28
Due
2023-10-19
Priority interval
76.096.7
Coverage
73%
643

Apple Multiple Products WebKit Code Execution Vulnerability

Apple iOS, iPadOS, macOS, and Safari WebKit contain an unspecified vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleMultiple Products

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-25
Due
2023-10-16
Priority interval
72.887.8
Coverage
85%
644

Apple Multiple Products Kernel Privilege Escalation Vulnerability

Apple iOS, iPadOS, macOS, and watchOS contain an unspecified vulnerability that allows for local privilege escalation.

AppleMultiple Products

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-25
Due
2023-10-16
Priority interval
62.977.9
Coverage
85%
645

Apple Multiple Products Improper Certificate Validation Vulnerability

Apple iOS, iPadOS, macOS, and watchOS contain an improper certificate validation vulnerability that can allow a malicious app to bypass signature validation.

AppleMultiple Products

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-25
Due
2023-10-16
Priority interval
58.073.0
Coverage
85%
646

Trend Micro Apex One and Worry-Free Business Security Remote Code Execution Vulnerability

Trend Micro Apex One and Worry-Free Business Security contain an unspecified vulnerability in the third-party anti-virus uninstaller that could allow an attacker to manipulate the module to conduct remote code execution. An attacker must first obtain administrative console access on the target system in order to exploit this vulnerability.

Trend MicroApex One and Worry-Free Business Security

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-21
Due
2023-10-12
Priority interval
62.477.4
Coverage
85%
647

MinIO Security Feature Bypass Vulnerability

MinIO contains a security feature bypass vulnerability that allows an attacker to use crafted requests to bypass metadata bucket name checking and put an object into any bucket while processing `PostPolicyBucket` to conduct privilege escalation. To carry out this attack, the attacker requires credentials with `arn:aws:s3:::*` permission, as well as enabled Console API access.

MinIOMinIO

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-19
Due
2023-10-10
Priority interval
67.282.2
Coverage
85%
648
CVE-2014-8361CISA KEVConflicting evidence

Realtek SDK Improper Input Validation Vulnerability

Realtek SDK contains an improper input validation vulnerability in the miniigd SOAP service that allows remote attackers to execute malicious code via a crafted NewInternalClient request.

RealtekSDK

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-18
Due
2023-10-09
Priority interval
84.5100.0
Coverage
73%
649
CVE-2021-3129CISA KEVKnown ransomwareConflicting evidence

Laravel Ignition File Upload Vulnerability

Laravel Ignition contains a file upload vulnerability that allows unauthenticated remote attackers to execute malicious code due to insecure usage of file_get_contents() and file_put_contents().

LaravelIgnition

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-18
Due
2023-10-09
Priority interval
78.799.5
Coverage
73%
650
CVE-2017-6884CISA KEVKnown ransomware

Zyxel EMG2926 Routers Command Injection Vulnerability

Zyxel EMG2926 routers contain a command injection vulnerability located in the diagnostic tools, specifically the nslookup function. A malicious user may exploit numerous vectors to execute malicious commands on the router, such as the ping_ip parameter to the expert/maintenance/diagnostic/nslookup URI.

ZyxelEMG2926 Routers

Required actionApply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Added
2023-09-18
Due
2023-10-09
Priority interval
74.389.8
Coverage
85%