CISA's list that day
3 November 2021
On CISA added 287 vulnerabilities to its list of exploited vulnerabilities, in SAP NetWeaver, Microsoft MSCOMCTL.OCX, Oracle Fusion Middleware and 138 other products. The US federal deadlines run from to .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2012-0158Remote Code Execution | Microsoft MSCOMCTL.OCX | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2012-3152Unspecified | Oracle Fusion Middleware | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2015-4852Deserialization of Untrusted Data | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.96; verified Exploit-DB entry | 0.96 | ||
| CVE-2016-4437Code Execution | Apache Shiro | Patch this weekMetasploit module; EPSS 0.93; verified Exploit-DB entry | 0.93 | ||
| CVE-2017-0143Server Message Block (SMBv1) Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.93; verified Exploit-DB entry | 0.93 | ||
| CVE-2017-0199Remote Code Execution | Microsoft Office and WordPad | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2017-5638Remote Code Execution | Apache Struts | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2017-7269Windows Server Buffer Overflow | Microsoft Internet Information Services (IIS) | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2017-9822Remote Code Execution | DotNetNuke (DNN) DotNetNuke (DNN) | Patch this weekRansomware use; Metasploit module; EPSS 0.95; verified Exploit-DB entry | 0.95 | ||
| CVE-2018-7600Remote Code Execution | Drupal Drupal Core | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2018-11776Remote Code Execution | Apache Struts | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2018-15811Inadequate Encryption Strength | DotNetNuke (DNN) DotNetNuke (DNN) | Patch this weekMetasploit module; EPSS 0.76; verified Exploit-DB entry | 0.76 | ||
| CVE-2018-18325Inadequate Encryption Strength | DotNetNuke (DNN) DotNetNuke (DNN) | Patch this weekMetasploit module; EPSS 0.74; verified Exploit-DB entry | 0.74 | ||
| CVE-2018-20062"noneCms" Remote Code Execution | ThinkPHP noneCms | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2019-0708Remote Code Execution | Microsoft Remote Desktop Services | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2019-1653Information Disclosure | Cisco Small Business RV320 and RV325 Routers | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2019-2215Use-After-Free | Android Android Kernel | Patch this weekMetasploit module; EPSS 0.72; verified Exploit-DB entry | 0.72 | ||
| CVE-2019-3396Confluence Server and Data Center Server-Side Template Injection | Atlassian Confluence Server and Data Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2019-4716Remote Code Execution | IBM Planning Analytics | Patch this weekMetasploit module; EPSS 0.86; verified Exploit-DB entry | 0.86 | ||
| CVE-2019-9082Remote Code Execution | ThinkPHP ThinkPHP | Patch this weekMetasploit module; EPSS 0.97; verified Exploit-DB entry | 0.97 | ||
| CVE-2019-11539Pulse Connect Secure and Policy Secure Command Injection | Ivanti Pulse Connect Secure and Pulse Policy Secure | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2019-15949Remote Code Execution | Nagios Nagios XI | Patch this weekMetasploit module; EPSS 0.77; verified Exploit-DB entry | 0.77 | ||
| CVE-2019-17558VelocityResponseWriter Plug-In Remote Code Execution | Apache Solr | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-0646Remote Code Execution | Microsoft .NET Framework | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-0688Validation Key Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-2555Remote Code Execution | Oracle Multiple Products | Patch this weekMetasploit module; EPSS 0.97; verified Exploit-DB entry | 0.97 | ||
| CVE-2020-5847Remote Code Execution | Unraid Unraid | Patch this weekMetasploit module; EPSS 0.96; verified Exploit-DB entry | 0.96 | ||
| CVE-2020-5849Authentication Bypass | Unraid Unraid | Patch this weekMetasploit module; EPSS 0.93; verified Exploit-DB entry | 0.93 | ||
| CVE-2020-6418Type Confusion | Google Chromium V8 | Patch this weekMetasploit module; EPSS 0.79; verified Exploit-DB entry | 0.79 | ||
| CVE-2020-7961Deserialization of Untrusted Data | Liferay Liferay Portal | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-8644Server-Side Template Injection | PlaySMS PlaySMS | Patch this weekMetasploit module; EPSS 0.87; verified Exploit-DB entry | 0.87 | ||
| CVE-2020-8655Improper Privilege Management | EyesOfNetwork EyesOfNetwork | Patch this weekMetasploit module; EPSS 0.60; verified Exploit-DB entry | 0.60 | ||
| CVE-2020-8657Use of Hard-Coded Credentials | EyesOfNetwork EyesOfNetwork | Patch this weekMetasploit module; EPSS 0.92; verified Exploit-DB entry | 0.92 | ||
| CVE-2020-10189Desktop Central File Upload | Zoho ManageEngine | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-10199Remote Code Execution | Sonatype Nexus Repository | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-25213Remote Code Execution | WordPress File Manager Plugin | Patch this weekMetasploit module; EPSS 0.97; verified Exploit-DB entry | 0.97 | ||
| CVE-2021-41773Path Traversal | Apache HTTP Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2021-42013Path Traversal | Apache HTTP Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2016-3235OLE DLL Side Loading | Microsoft Office | Patch this weekMetasploit module; verified Exploit-DB entry | 0.43 | ||
| CVE-2019-15752Privilege Escalation | Docker Desktop Community Edition | Patch this weekMetasploit module; verified Exploit-DB entry | 0.49 | ||
| CVE-2020-3950Privilege Escalation | VMware Multiple Products | Patch this weekMetasploit module; verified Exploit-DB entry | 0.07 | ||
| CVE-2014-1812Group Policy Preferences Password Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.65 | 0.65 | ||
| CVE-2017-9805Deserialization of Untrusted Data | Apache Struts | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2017-11882Memory Corruption | Microsoft Office | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2018-0296Denial-of-Service | Cisco Adaptive Security Appliance (ASA) | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2018-13379SSL VPN Path Traversal | Fortinet FortiOS | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2018-15961Unrestricted File Upload | Adobe ColdFusion | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2019-8394ServiceDesk Plus (SDP) File Upload | Zoho ManageEngine | Patch this weekMetasploit module; EPSS 0.63 | 0.63 | ||
| CVE-2019-11510Arbitrary File Read | Ivanti Pulse Connect Secure | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2019-11580Remote Code Execution | Atlassian Crowd and Crowd Data Center | Patch this weekRansomware use; Metasploit module; EPSS 0.95 | 0.95 | ||
| CVE-2019-16759PHP Module Remote Code Execution | vBulletin vBulletin | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2019-18935Deserialization of Untrusted Data | Progress Telerik UI for ASP.NET AJAX | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2019-19781ADC, Gateway, and SD-WAN WANOP Appliance Code Execution | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2019-20085Directory Traversal | TVT NVMS-1000 | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| CVE-2020-1147.NET Framework, SharePoint, and Visual Studio Remote Code Execution | Microsoft .NET Framework, SharePoint, Visual Studio | Patch this weekMetasploit module; EPSS 0.94 | 0.94 | ||
| CVE-2020-1472Privilege Escalation | Microsoft Netlogon | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2020-3952Information Disclosure | VMware vCenter Server | Patch this weekMetasploit module; EPSS 0.90 | 0.90 | ||
| CVE-2020-4427Security Bypass | IBM Data Risk Manager | Patch this weekMetasploit module; EPSS 0.70 | 0.70 | ||
| CVE-2020-4428Remote Code Execution | IBM Data Risk Manager | Patch this weekMetasploit module; EPSS 0.62 | 0.62 | ||
| CVE-2020-5902Traffic Management User Interface (TMUI) Remote Code Execution | F5 BIG-IP | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2020-6207Missing Authentication for Critical Function | SAP Solution Manager | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| CVE-2020-6287Missing Authentication for Critical Function | SAP NetWeaver | Patch this weekMetasploit module; EPSS 0.95 | 0.95 | ||
| CVE-2020-8260Code Execution | Ivanti Pulse Connect Secure | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| CVE-2020-11651Authentication Bypass | SaltStack Salt | Patch this weekMetasploit module; EPSS 0.97 | 0.97 | ||
| CVE-2020-11652Path Traversal | SaltStack Salt | Patch this weekMetasploit module; EPSS 0.86 | 0.86 | ||
| CVE-2020-11738File Download | WordPress Snap Creek Duplicator Plugin | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| CVE-2020-14750Remote Code Execution | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2020-14871Unspecified | Oracle Solaris and Zettabyte File System (ZFS) | Patch this weekMetasploit module; EPSS 0.80 | 0.80 | ||
| CVE-2020-14882Remote Code Execution | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2020-14883Unspecified | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| CVE-2020-15505Remote Code Execution | Ivanti MobileIron Multiple Products | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2020-16846Shell Injection | SaltStack Salt | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2020-17496PHP Module Remote Code Execution | vBulletin vBulletin | Patch this weekMetasploit module; EPSS 0.87 | 0.87 | ||
| CVE-2020-17530Remote Code Execution | Apache Struts | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| CVE-2021-1497Installer Virtual Machine Command Injection | Cisco HyperFlex HX | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-1498Data Platform Command Injection | Cisco HyperFlex HX | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-1675Print Spooler Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.85 | 0.85 | ||
| CVE-2021-1732Privilege Escalation | Microsoft Win32k | Patch this weekRansomware use; Metasploit module; EPSS 0.78 | 0.78 | ||
| CVE-2021-21220Improper Input Validation | Google Chromium V8 | Patch this weekMetasploit module; EPSS 0.70 | 0.70 | ||
| CVE-2021-21972Remote Code Execution | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-21985Improper Input Validation | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-22005File Upload | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-22205Remote Code Execution | GitLab Community and Enterprise Editions | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-22502Operation Bridge Report (OBR) Remote Code Execution | Micro Focus Operation Bridge Reporter (OBR) | Patch this weekMetasploit module; EPSS 0.97 | 0.97 | ||
| CVE-2021-22986iControl REST Remote Code Execution | F5 BIG-IP and BIG-IQ Centralized Management | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-26084Object-Graph Navigation Language (OGNL) Injection | Atlassian Confluence Server and Data Center | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-26855Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-27065Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-30657Unspecified | Apple macOS | Patch this weekMetasploit module; EPSS 0.69 | 0.69 | ||
| CVE-2021-31207Security Feature Bypass | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-34473Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-34523Privilege Escalation | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-34527Print Spooler Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-35464Core Server Remote Code Execution | ForgeRock Access Management (AM) | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-36942Local Security Authority (LSA) Spoofing | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.66 | 0.66 | ||
| CVE-2021-38647Remote Code Execution | Microsoft Open Management Infrastructure (OMI) | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-40444Remote Code Execution | Microsoft MSHTML | Patch this weekRansomware use; Metasploit module; EPSS 0.97 | 0.97 | ||
| CVE-2021-40539ADSelfService Plus Authentication Bypass | Zoho ManageEngine | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2021-42258SQL Injection | BQE BillQuick Web Suite | Patch this weekRansomware use; Metasploit module; EPSS 0.74 | 0.74 | ||
| CVE-2017-16651File Disclosure | Roundcube Roundcube Webmail | Patch this weekMetasploit module | 0.46 |
Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.