Historical snapshot · Cybersecurity

CISA Exploited Vulnerabilities

Vulnerabilities with evidence of exploitation, including affected products and required actions.

This page is an archived snapshot of the CISA Exploited Vulnerabilities feed collected on Oct 1, 2026, preserved by BioThreat Corporation. Publication dates belong to the original source; this snapshot is not a current advisory.
1731 recordsOfficial source · JSON
CVE-2020-6287 · CISA Known Exploited Vulnerabilities

SAP NetWeaver Missing Authentication for Critical Function Vulnerability

Vendor: SAP | Product: NetWeaver | SAP NetWeaver Application Server Java Platforms contains a missing authentication for critical function vulnerability allowing unauthenticated access to execute configuration tasks and create administrative users. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2020-6207 · CISA Known Exploited Vulnerabilities

SAP Solution Manager Missing Authentication for Critical Function Vulnerability

Vendor: SAP | Product: Solution Manager | SAP Solution Manager User Experience Monitoring contains a missing authentication for critical function vulnerability which results in complete compromise of all SMDAgents connected to the Solution Manager. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2016-3976 · CISA Known Exploited Vulnerabilities

SAP NetWeaver Directory Traversal Vulnerability

Vendor: SAP | Product: NetWeaver | SAP NetWeaver Application Server Java Platforms contains a directory traversal vulnerability via a ..\ (dot dot backslash) in the fileName parameter to CrashFileDownloadServlet. This allows remote attackers to read files. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2019-16256 · CISA Known Exploited Vulnerabilities

SIMalliance Toolbox Browser Command Injection Vulnerability

Vendor: SIMalliance | Product: Toolbox Browser | SIMalliance Toolbox Browser contains an command injection vulnerability that could allow remote attackers to retrieve location and IMEI information or execute a range of other attacks by modifying the attack message. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2020-10148 · CISA Known Exploited Vulnerabilities

SolarWinds Orion Authentication Bypass Vulnerability

Vendor: SolarWinds | Product: Orion | SolarWinds Orion API contains an authentication bypass vulnerability that could allow a remote attacker to execute API commands. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-35211 · CISA Known Exploited Vulnerabilities

SolarWinds Serv-U Remote Code Execution Vulnerability

Vendor: SolarWinds | Product: Serv-U | SolarWinds Serv-U contains an unspecified memory escape vulnerability which can allow for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2016-3643 · CISA Known Exploited Vulnerabilities

SolarWinds Virtualization Manager Privilege Escalation Vulnerability

Vendor: SolarWinds | Product: Virtualization Manager | SolarWinds Virtualization Manager allows for privilege escalation through leveraging a misconfiguration of sudo. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2020-10199 · CISA Known Exploited Vulnerabilities

Sonatype Nexus Repository Remote Code Execution Vulnerability

Vendor: Sonatype | Product: Nexus Repository | Sonatype Nexus Repository contains an unspecified vulnerability that allows for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-20021 · CISA Known Exploited Vulnerabilities

SonicWall Email Security Improper Privilege Management Vulnerability

Vendor: SonicWall | Product: SonicWall Email Security | SonicWall Email Security contains an improper privilege management vulnerability that allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20022 and CVE-2021-20023 to achieve privilege escalation. | Required…
Read full source summary
Vendor: SonicWall | Product: SonicWall Email Security | SonicWall Email Security contains an improper privilege management vulnerability that allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20022 and CVE-2021-20023 to achieve privilege escalation. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2019-7481 · CISA Known Exploited Vulnerabilities

SonicWall SMA100 SQL Injection Vulnerability

Vendor: SonicWall | Product: SMA100 | SonicWall SMA100 contains a SQL injection vulnerability allowing an unauthenticated user to gain read-only access to unauthorized resources. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-20022 · CISA Known Exploited Vulnerabilities

SonicWall Email Security Unrestricted Upload of File Vulnerability

Vendor: SonicWall | Product: SonicWall Email Security | SonicWall Email Security contains an unrestricted upload of file with dangerous type vulnerability that allows a post-authenticated attacker to upload a file to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20023 to achieve privilege escalation. | Required action: Apply…
Read full source summary
Vendor: SonicWall | Product: SonicWall Email Security | SonicWall Email Security contains an unrestricted upload of file with dangerous type vulnerability that allows a post-authenticated attacker to upload a file to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20023 to achieve privilege escalation. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2021-20023 · CISA Known Exploited Vulnerabilities

SonicWall Email Security Path Traversal Vulnerability

Vendor: SonicWall | Product: SonicWall Email Security | SonicWall Email Security contains a path traversal vulnerability that allows a post-authenticated attacker to read files on the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20022 to achieve privilege escalation. | Required action: Apply updates per vendor instructions. |…
Read full source summary
Vendor: SonicWall | Product: SonicWall Email Security | SonicWall Email Security contains a path traversal vulnerability that allows a post-authenticated attacker to read files on the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20022 to achieve privilege escalation. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2021-20016 · CISA Known Exploited Vulnerabilities

SonicWall SSLVPN SMA100 SQL Injection Vulnerability

Vendor: SonicWall | Product: SSLVPN SMA100 | SonicWall SSLVPN SMA100 contains a SQL injection vulnerability that allows remote exploitation for credential access by an unauthenticated attacker. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2020-12271 · CISA Known Exploited Vulnerabilities

Sophos SFOS SQL Injection Vulnerability

Vendor: Sophos | Product: SFOS | Sophos Firewall operating system (SFOS) firmware contains a SQL injection vulnerability when configured with either the administration (HTTPS) service or the User Portal is exposed on the WAN zone. Successful exploitation may cause remote code execution to exfiltrate usernames and hashed passwords for the local device admin(s), portal admins, and user accounts used for remote access…
Read full source summary
Vendor: Sophos | Product: SFOS | Sophos Firewall operating system (SFOS) firmware contains a SQL injection vulnerability when configured with either the administration (HTTPS) service or the User Portal is exposed on the WAN zone. Successful exploitation may cause remote code execution to exfiltrate usernames and hashed passwords for the local device admin(s), portal admins, and user accounts used for remote access (but not external Active Directory or LDAP passwords). | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2020-10181 · CISA Known Exploited Vulnerabilities

Sumavision EMR Cross-Site Request Forgery (CSRF) Vulnerability

Vendor: Sumavision | Product: Enhanced Multimedia Router (EMR) | Sumavision Enhanced Multimedia Router (EMR) contains a cross-site request forgery (CSRF) vulnerability allowing the creation of users with elevated privileges as administrator on a device. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2017-6327 · CISA Known Exploited Vulnerabilities

Symantec Messaging Gateway Remote Code Execution Vulnerability

Vendor: Symantec | Product: Symantec Messaging Gateway | Symantec Messaging Gateway contains an unspecified vulnerability which can allow for remote code execution. With the ability to perform remote code execution, an attacker may also desire to perform privilege escalating actions. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2019-18988 · CISA Known Exploited Vulnerabilities

TeamViewer Desktop Bypass Remote Login Vulnerability

Vendor: TeamViewer | Product: Desktop | TeamViewer Desktop allows for bypass of remote-login access control because the same AES key is used for different customers' installations. If an attacker were to know this key, they could decrypt protected information stored in registry or configuration files or decryption of the Unattended Access password to the system (which allows for remote login to the system). |…
Read full source summary
Vendor: TeamViewer | Product: Desktop | TeamViewer Desktop allows for bypass of remote-login access control because the same AES key is used for different customers' installations. If an attacker were to know this key, they could decrypt protected information stored in registry or configuration files or decryption of the Unattended Access password to the system (which allows for remote login to the system). | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2017-9248 · CISA Known Exploited Vulnerabilities

Progress Telerik UI for ASP.NET AJAX and Sitefinity Cryptographic Weakness Vulnerability

Vendor: Progress | Product: ASP.NET AJAX and Sitefinity | Progress Telerik UI for ASP.NET AJAX and Sitefinity have a cryptographic weakness in Telerik.Web.UI.dll that can be exploited to disclose encryption keys (Telerik.Web.UI.DialogParametersEncryptionKey and/or the MachineKey), perform cross-site-scripting (XSS) attacks, compromise the ASP.NET ViewState, and/or upload and download files. | Required action: Apply…
Read full source summary
Vendor: Progress | Product: ASP.NET AJAX and Sitefinity | Progress Telerik UI for ASP.NET AJAX and Sitefinity have a cryptographic weakness in Telerik.Web.UI.dll that can be exploited to disclose encryption keys (Telerik.Web.UI.DialogParametersEncryptionKey and/or the MachineKey), perform cross-site-scripting (XSS) attacks, compromise the ASP.NET ViewState, and/or upload and download files. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-31755 · CISA Known Exploited Vulnerabilities

Tenda AC11 Router Stack Buffer Overflow Vulnerability

Vendor: Tenda | Product: AC11 Router | Tenda AC11 devices contain a stack buffer overflow vulnerability in /goform/setmac which allows attackers to execute code via a crafted post request. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2020-10987 · CISA Known Exploited Vulnerabilities

Tenda AC1900 Router AC15 Model Remote Code Execution Vulnerability

Vendor: Tenda | Product: AC1900 Router AC15 Model | Tenda AC1900 Router AC15 Model contains an unspecified vulnerability that allows remote attackers to execute system commands via the deviceName POST parameter. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
Browse saved snapshots

Sources & context

About these feeds

About BioThreat Corporation

BioThreat Corporation threat monitoring workflows bring together reports published by the named source institutions. These are public-source reports; publication dates and source links accompany each record.

01 / SOURCE

Read the source

Open a feed to search titles, summaries, or CVE IDs. Follow a record’s title or the Official source link to read the reporting in its original context.

Browse public feeds
02 / HISTORY

Compare over time

Daily snapshots are collected when a source is visited and successfully refreshed. Archive dates indicate collection dates, and the archive may contain gaps.

Browse saved snapshots
03 / RECORDS

Use the records

JSON links provide machine-readable records with source names, titles, summaries, links, and publication dates. Choose a saved date for the records collected in that snapshot.

Archive sitemap

The BioThreat Corporation Library brings together research, analysis, and reference material across our areas of focus.

Live feed index