TechAni

Insights Lab

Live Signals

Threat surface, AI/ML signals.

Live

Threat Surface Pulse

Real-time snapshots from CISA KEV and other signals. Highlights exposed risk and trending CVEs.

  • Recent KEV additions
  • Exec-ready talking points
CVE-2020-1938Due 3/17/2022

Apache

Apache Tomcat treats Apache JServ Protocol (AJP) connections as having higher trust than, for example, a similar HTTP connection. If such connections are available to an attacker, they can be exploited.

CVE-2020-11899Due 3/17/2022

Treck TCP/IP stack

The Treck TCP/IP stack contains an IPv6 out-of-bounds read vulnerability.

CVE-2019-16928Due 3/17/2022

Exim

Exim contains an out-of-bounds write vulnerability which can allow for remote code execution.

CVE-2019-1652Due 3/17/2022

Cisco

A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an authenticated, remote attacker with administrative privileges on an affected device to execute arbitrary commands.

CVE-2019-1297Due 3/17/2022

Microsoft

A remote code execution vulnerability exists in Microsoft Excel when the software fails to properly handle objects in memory.