TechAni

Insights Lab

Live Signals

Threat surface, AI/ML signals.

Live

Threat Surface Pulse

Real-time snapshots from CISA KEV and other signals. Highlights exposed risk and trending CVEs.

  • Recent KEV additions
  • Exec-ready talking points
CVE-2021-22941Due 4/15/2022

Citrix

Improper Access Control in Citrix ShareFile storage zones controller may allow an unauthenticated attacker to remotely compromise the storage zones controller.

CVE-2020-9377Due 4/15/2022

D-Link

D-Link DIR-610 devices allow remote code execution via the cmd parameter to command.php.

CVE-2020-9054Due 4/15/2022

Zyxel

Multiple Zyxel network-attached storage (NAS) devices contain a pre-authentication command injection vulnerability, which may allow a remote, unauthenticated attacker to execute arbitrary code.

CVE-2020-7247Due 4/15/2022

OpenBSD

smtp_mailaddr in smtp_session.c in OpenSMTPD, as used in OpenBSD and other products, allows remote attackers to execute arbitrary commands as root via a crafted SMTP session.

CVE-2020-5410Due 4/15/2022

VMware Tanzu

Spring, by VMware Tanzu, Cloud Config contains a path traversal vulnerability that allows applications to serve arbitrary configuration files.

← PrevPage 185 / 298Next →