TechAni

Insights Lab

Live Signals

Threat surface, AI/ML signals.

Live

Threat Surface Pulse

Real-time snapshots from CISA KEV and other signals. Highlights exposed risk and trending CVEs.

  • Recent KEV additions
  • Exec-ready talking points
CVE-2019-6340Due 4/15/2022

Drupal

In Drupal Core, some field types do not properly sanitize data from non-form sources. This can lead to arbitrary PHP code execution in some cases.

CVE-2019-2616Due 4/15/2022

Oracle

Oracle BI Publisher, formerly XML Publisher, contains an unspecified vulnerability that allows for various unauthorized actions. Open-source reporting attributes this vulnerability to allowing for authentication bypass.

CVE-2019-16920Due 4/15/2022

D-Link

Multiple D-Link routers contain a command injection vulnerability which can allow attackers to achieve full system compromise.

CVE-2019-15107Due 4/15/2022

Webmin

An issue was discovered in Webmin. The parameter old in password_change.cgi contains a command injection vulnerability.

CVE-2019-12991Due 4/15/2022

Citrix

Authenticated Command Injection in Citrix SD-WAN Appliance and NetScaler SD-WAN Appliance.

← PrevPage 187 / 298Next →