TechAni

Insights Lab

Live Signals

Threat surface, AI/ML signals.

Live

Threat Surface Pulse

Real-time snapshots from CISA KEV and other signals. Highlights exposed risk and trending CVEs.

  • Recent KEV additions
  • Exec-ready talking points
CVE-2020-2021Due 4/15/2022

Palo Alto Networks

Palo Alto Networks PAN-OS contains a vulnerability in SAML which allows an attacker to bypass authentication.

CVE-2020-1956Due 4/15/2022

Apache

Apache Kylin contains an OS command injection vulnerability which could permit an attacker to perform remote code execution.

CVE-2020-1631Due 4/15/2022

Juniper

A path traversal vulnerability in the HTTP/HTTPS service used by J-Web, Web Authentication, Dynamic-VPN (DVPN), Firewall Authentication Pass-Through with Web-Redirect, and Zero Touch Provisioning (ZTP) allows an unauthenticated attacker to perform remote code execution.

CVE-2019-6340Due 4/15/2022

Drupal

In Drupal Core, some field types do not properly sanitize data from non-form sources. This can lead to arbitrary PHP code execution in some cases.

CVE-2019-2616Due 4/15/2022

Oracle

Oracle BI Publisher, formerly XML Publisher, contains an unspecified vulnerability that allows for various unauthorized actions. Open-source reporting attributes this vulnerability to allowing for authentication bypass.

← PrevPage 186 / 297Next →