CISA's list that day
25 March 2022
On CISA added 66 vulnerabilities to its list of exploited vulnerabilities, in Hewlett Packard (HP) OpenView Network Node Manager, Adobe Reader and Acrobat, phpMyAdmin and 53 other products. US federal agencies must fix them by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2005-2773HP OpenView Network Node Manager Remote Code Execution | Hewlett Packard (HP) OpenView Network Node Manager | Patch this weekMetasploit module; EPSS 0.75; verified Exploit-DB entry | 0.75 | ||
| CVE-2009-0927Reader and Adobe Acrobat Stack-Based Buffer Overflow | Adobe Reader and Acrobat | Patch this weekMetasploit module; EPSS 0.97; verified Exploit-DB entry | 0.97 | ||
| CVE-2009-1151Remote Code Execution | phpMyAdmin phpMyAdmin | Patch this weekMetasploit module; EPSS 0.97; verified Exploit-DB entry | 0.97 | ||
| CVE-2010-2861Directory Traversal | Adobe ColdFusion | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2010-4344Heap-Based Buffer Overflow | Exim Exim | Patch this weekMetasploit module; EPSS 0.72; verified Exploit-DB entry | 0.72 | ||
| CVE-2012-1823PHP-CGI Query String Parameter | PHP PHP | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2013-2251Improper Input Validation | Apache Struts | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2014-3120Remote Code Execution | Elastic Elasticsearch | Patch this weekMetasploit module; EPSS 0.89; verified Exploit-DB entry | 0.89 | ||
| CVE-2014-6287Remote Code Execution | Rejetto HTTP File Server (HFS) | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2014-6324Privilege Escalation | Microsoft Kerberos Key Distribution Center (KDC) | Patch this weekMetasploit module; EPSS 0.87; verified Exploit-DB entry | 0.87 | ||
| CVE-2014-6332Object Linking & Embedding (OLE) Automation Array Remote Code Execution | Microsoft Windows | Patch this weekMetasploit module; EPSS 0.95; verified Exploit-DB entry | 0.95 | ||
| CVE-2015-1187Remote Code Execution | D-Link and TRENDnet Multiple Devices | Patch this weekMetasploit module; EPSS 0.83; verified Exploit-DB entry | 0.83 | ||
| CVE-2015-1427Groovy Scripting Engine Remote Code Execution | Elastic Elasticsearch | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2016-0752Directory Traversal | Rails Ruby on Rails | Patch this weekMetasploit module; EPSS 0.96; verified Exploit-DB entry | 0.96 | ||
| CVE-2016-1555Multiple WAP Devices Command Injection | NETGEAR Wireless Access Point (WAP) Devices | Patch this weekMetasploit module; EPSS 0.98; verified Exploit-DB entry | 0.98 | ||
| CVE-2016-10174Buffer Overflow | NETGEAR WNR2000v5 Router | Patch this weekMetasploit module; EPSS 0.83; verified Exploit-DB entry | 0.83 | ||
| CVE-2017-0146SMB Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.90; verified Exploit-DB entry | 0.90 | ||
| CVE-2017-6334OS Command Injection | NETGEAR DGN2200 Devices | Patch this weekMetasploit module; EPSS 0.73; verified Exploit-DB entry | 0.73 | ||
| CVE-2017-12617Remote Code Execution | Apache Tomcat | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2018-11138Remote Command Execution | Quest KACE System Management Appliance | Patch this weekRansomware use; Metasploit module; EPSS 0.92; verified Exploit-DB entry | 0.92 | ||
| CVE-2019-6340Remote Code Execution | Drupal Core | Patch this weekMetasploit module; EPSS 0.92; verified Exploit-DB entry | 0.92 | ||
| CVE-2019-11043Buffer Overflow | PHP FastCGI Process Manager (FPM) | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2019-15107Command Injection | Webmin Webmin | Patch this weekRansomware use; Metasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2020-7247Remote Code Execution | OpenBSD OpenSMTPD | Patch this weekMetasploit module; EPSS 0.99; verified Exploit-DB entry | 0.99 | ||
| CVE-2010-4345Privilege Escalation | Exim Exim | Patch this weekMetasploit module; verified Exploit-DB entry | 0.18 | ||
| CVE-2015-3035Directory Traversal | TP-Link Multiple Archer Devices | Patch this weekMetasploit module; EPSS 0.84 | 0.84 | ||
| CVE-2016-11021OS Command Injection | D-Link DCS-930L Devices | Patch this weekMetasploit module; EPSS 0.69 | 0.69 | ||
| CVE-2017-3881Remote Code Execution | Cisco IOS and IOS XE | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| CVE-2019-10068Deserialization of Untrusted Data | Kentico Xperience | Patch this weekMetasploit module; EPSS 0.95 | 0.95 | ||
| CVE-2020-5410Spring Cloud Config Directory Traversal | VMware Tanzu Spring Cloud Configuration (Config) Server | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| CVE-2020-25223Remote Code Execution | Sophos SG UTM | Patch this weekMetasploit module; EPSS 0.97 | 0.97 | ||
| CVE-2021-42237Remote Command Execution | Sitecore XP | Patch this weekRansomware use; Metasploit module; EPSS 0.98 | 0.98 | ||
| CVE-2022-26318Arbitrary Code Execution | WatchGuard Firebox and XTM Appliances | Patch this weekMetasploit module; EPSS 0.78 | 0.78 | ||
| CVE-2022-21999Print Spooler Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.41 | ||
| CVE-2013-4810HP Multiple Products Remote Code Execution | Hewlett Packard (HP) ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management | Patch this weekEPSS 0.79; verified Exploit-DB entry | 0.79 | ||
| CVE-2018-6961by VeloCloud Command Injection | VMware SD-WAN Edge | Patch this weekEPSS 0.86; verified Exploit-DB entry | 0.86 | ||
| CVE-2019-2616BI Publisher Unauthorized Access | Oracle BI Publisher (Formerly XML Publisher) | Patch this weekEPSS 0.92; verified Exploit-DB entry | 0.92 | ||
| CVE-2019-12989SQL Injection | Citrix SD-WAN and NetScaler | Patch this weekEPSS 0.95; verified Exploit-DB entry | 0.95 | ||
| CVE-2019-12991Command Injection | Citrix SD-WAN and NetScaler | Patch this weekEPSS 0.74; verified Exploit-DB entry | 0.74 | ||
| CVE-2015-4068Directory Traversal | Arcserve Unified Data Protection (UDP) | Patch this weekEPSS 0.64 | 0.64 | ||
| CVE-2017-6316Multiple Products Remote Code Execution | Citrix NetScaler SD-WAN Enterprise, CloudBridge Virtual WAN, and XenMobile Server | Patch this weekEPSS 0.73 | 0.73 | ||
| CVE-2017-12615on Windows Remote Code Execution | Apache Tomcat | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| CVE-2018-0125Remote Code Execution | Cisco VPN Routers | Patch this weekEPSS 0.55 | 0.55 | ||
| CVE-2018-1273Property Binder | VMware Tanzu Spring Data Commons | Patch this weekRansomware use; EPSS 0.97 | 0.97 | ||
| CVE-2018-8373Scripting Engine Memory Corruption | Microsoft Internet Explorer Scripting Engine | Patch this weekEPSS 0.62 | 0.62 | ||
| CVE-2018-8414Shell Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.73 | 0.73 | ||
| CVE-2018-14839Remote Command Execution | LG N1A1 NAS | Patch this weekEPSS 0.89 | 0.89 | ||
| CVE-2019-16920Command Injection | D-Link Multiple Routers | Patch this weekEPSS 0.99 | 0.99 | ||
| CVE-2019-1003030Remote Code Execution | Jenkins Matrix Project Plugin | Patch this weekEPSS 0.97 | 0.97 | ||
| CVE-2020-1956OS Command Injection | Apache Kylin | Patch this weekEPSS 0.97 | 0.97 | ||
| CVE-2020-9054Multiple NAS Devices OS Command Injection | Zyxel Multiple Network-Attached Storage (NAS) Devices | Patch this weekEPSS 0.99 | 0.99 | ||
| CVE-2022-26143Access Control | Mitel MiCollab, MiVoice Business Express | Patch this weekEPSS 0.87 | 0.87 | ||
| CVE-2013-5223Gateway Cross-Site Scripting | D-Link DSL-2760U | Patch this weekEPSS 0.51 | 0.51 | ||
| CVE-2014-0130Directory Traversal | Rails Ruby on Rails | Patch this weekEPSS 0.54 | 0.54 | ||
| CVE-2021-22941Improper Access Control | Citrix ShareFile | Patch this weekRansomware use; EPSS 0.54 | 0.54 | ||
| CVE-2020-2021Authentication Bypass | Palo Alto Networks PAN-OS | Patch this weekRansomware use | 0.04 | ||
| CVE-2015-0666Directory Traversal | Cisco Prime Data Center Network Manager (DCNM) | Patch soon | 0.40 | ||
| CVE-2016-4171Remote Code Execution | Adobe Flash Player | Patch soon | 0.20 | ||
| CVE-2016-7892Use-After-Free | Adobe Flash Player | Patch soon | 0.19 | ||
| CVE-2018-0147Secure Access Control System Java Deserialization | Cisco Secure Access Control System (ACS) | Patch soon | 0.18 | ||
| CVE-2019-0903GDI Remote Code Execution | Microsoft Graphics Device Interface (GDI) | Patch soon | 0.22 | ||
| CVE-2020-9377Remote Command Execution | D-Link DIR-610 Devices | Patch soon | 0.21 | ||
| CVE-2010-3035Border Gateway Protocol (BGP) Denial-of-Service | Cisco IOS XR | Patch soon | 0.06 | ||
| CVE-2020-1631Path Traversal | Juniper Junos OS | Patch soon | 0.05 | ||
| CVE-2009-2055Border Gateway Protocol (BGP) Denial-of-Service | Cisco IOS XR | Patch soon | 0.03 | ||
| CVE-2020-2506QNAP Helpdesk Improper Access Control | QNAP Systems Helpdesk | Patch soon | 0.02 |
Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.