TechAni
Dark mode

Insights Lab

Live Signals

Threat surface, AI/ML signals.

Live

Threat Surface Pulse

Real-time snapshots from CISA KEV and other signals. Highlights exposed risk and trending CVEs.

  • Recent KEV additions
  • Exec-ready talking points
CVE-2020-9054Due 4/15/2022

Zyxel

Multiple Zyxel network-attached storage (NAS) devices contain a pre-authentication command injection vulnerability, which may allow a remote, unauthenticated attacker to execute arbitrary code.

CVE-2020-7247Due 4/15/2022

OpenBSD

smtp_mailaddr in smtp_session.c in OpenSMTPD, as used in OpenBSD and other products, allows remote attackers to execute arbitrary commands as root via a crafted SMTP session.

CVE-2020-5410Due 4/15/2022

VMware Tanzu

Spring, by VMware Tanzu, Cloud Config contains a path traversal vulnerability that allows applications to serve arbitrary configuration files.

CVE-2020-25223Due 4/15/2022

Sophos

A remote code execution vulnerability exists in the WebAdmin of Sophos SG UTM.

CVE-2020-2506Due 4/15/2022

QNAP Systems

QNAP Helpdesk contains an improper access control vulnerability which could allow an attacker to gain privileges or to read sensitive information.

← PrevPage 185 / 297Next →