Threat Intelligence

Secure Today. Defend Tomorrow.

Real-time threat feed from trusted sources. Updated continuously to keep you informed of the latest malicious activity.

CISA KEV · Vulnerability 4 years ago

Microsoft Word Memory Corruption Vulnerability

Microsoft Word contains a memory corruption vulnerability which when exploited could allow for remote code execution.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft Graphics Component Memory Corruption Vulnerability

Microsoft Graphics Component contains a memory corruption vulnerability which can allow for remote code execution.

Read More →
CISA KEV · Vulnerability 4 years ago

Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability

Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft Windows SAM Local Privilege Escalation Vulnerability

If a Volume Shadow Copy (VSS) shadow copy of the system drive is available, users can read the SAM file which would allow any user to escalate privileges to SYSTEM level.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft SMBv3 Remote Code Execution Vulnerability

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.

Read More →
CISA KEV · Vulnerability 4 years ago

Jenkins Stapler Web Framework Deserialization of Untrusted Data Vulnerability

A code execution vulnerability exists in the Stapler web framework used by Jenkins

Read More →
CISA KEV · Vulnerability 4 years ago

Apache Struts 1 Improper Input Validation Vulnerability

The Struts 1 plugin in Apache Struts might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability

Windows Shell in multiple versions of Microsoft Windows allows local users or remote attackers to execute arbitrary code via a crafted .LNK file

Read More →
CISA KEV · Vulnerability 4 years ago

Oracle Corporation WebLogic Server Remote Code Execution Vulnerability

Oracle Corporation WebLogic Server contains a vulnerability that allows for remote code execution.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft Win32k Privilege Escalation Vulnerability

Microsoft Win32k contains a privilege escalation vulnerability due to the Windows kernel-mode driver failing to properly handle objects in memory.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft Office Remote Code Execution Vulnerability

A remote code execution vulnerability exists in Microsoft Office.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft SMBv1 Remote Code Execution Vulnerability

The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft SMBv1 Remote Code Execution Vulnerability

The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets.

Read More →
CISA KEV · Vulnerability 4 years ago

Apache ActiveMQ Improper Input Validation Vulnerability

The Fileserver web application in Apache ActiveMQ allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request

Read More →
CISA KEV · Vulnerability 4 years ago

D-Link DIR-645 Router Remote Code Execution Vulnerability

D-Link DIR-645 Wired/Wireless Router allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft HTTP.sys Remote Code Execution Vulnerability

Microsoft HTTP protocol stack (HTTP.sys) contains a vulnerability that allows for remote code execution.

Read More →
CISA KEV · Vulnerability 4 years ago

Apple OS X Authentication Bypass Vulnerability

The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges.

Read More →
CISA KEV · Vulnerability 4 years ago

Apple OS X Heap-Based Buffer Overflow Vulnerability

Heap-based buffer overflow in IOHIDFamily in Apple OS X, which affects, iOS before 8 and Apple TV before 7, allows attackers to execute arbitrary code in a privileged context.

Read More →
CISA KEV · Vulnerability 4 years ago

Microsoft Win32k Privilege Escalation Vulnerability

Microsoft Win32k contains an unspecified vulnerability that allows for privilege escalation.

Read More →
CISA KEV · Vulnerability 4 years ago

Apple Memory Corruption Vulnerability

Apple IOMobileFrameBuffer contains a memory corruption vulnerability which can allow a malicious application to execute arbitrary code with kernel privileges.

Read More →

Sources

  • AlienVault OTX
  • CISA KEV
  • URLhaus

Stay Ahead of Threats

Secure Today. Defend Tomorrow.

Get daily threat intelligence and CVE digests delivered to your inbox.