Skip to main content

Full CISA KEV catalog

Every CVE the U.S. cybersecurity agency has flagged as actively exploited. Search by vendor or product. Filter by category, time window, or ransomware association. Paginated 50 per page.

Reset
Showing 101–150 of 153 · Page 3 of 4
Clear all filters
CVE Vendor / product Vulnerability Categories Added to KEV
CVE-2025-22457
Ivanti
Connect Secure, Policy Secure, and ZTA Gateways
Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
Ivanti Connect Secure, Policy Secure, and ZTA Gateways contains a stack-based buffer overflow vulnerability that allows a remote unauthenticated attacker to achieve remote code execution.
Ransomware VPN / Remote access Yacht-focused Apr 4, 2025
CVE-2025-24813
Apache
Tomcat
Apache Tomcat Path Equivalence Vulnerability
Apache Tomcat contains a path equivalence vulnerability that allows a remote attacker to execute code, disclose information, or inject malicious content via a partial PUT request.
Server OS / DB / Web Yacht-focused Apr 1, 2025
CVE-2024-20439
Cisco
Smart Licensing Utility
Cisco Smart Licensing Utility Static Credential Vulnerability
Cisco Smart Licensing Utility contains a static credential vulnerability that allows an unauthenticated, remote attacker to log in to an affected system and gain administrative credentials.
Network gear Yacht-focused Mar 31, 2025
CVE-2017-12637
SAP
NetWeaver
SAP NetWeaver Directory Traversal Vulnerability
SAP NetWeaver Application Server (AS) Java contains a directory traversal vulnerability in scheduler/ui/js/ffffffffbca41eb4/UIUtilJavaScriptJS that allows a remote attacker to read arbitrary files via a .. (dot dot) in the query string.
Enterprise stack Yacht-focused Mar 19, 2025
CVE-2025-1316
Edimax
IC-7100 IP Camera
Edimax IC-7100 IP Camera OS Command Injection Vulnerability
Edimax IC-7100 IP camera contains an OS command injection vulnerability due to improper input sanitization that allows an attacker to achieve remote code execution via specially crafted requests. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
IoT Yacht-focused Mar 19, 2025
CVE-2025-24472
Fortinet
FortiOS and FortiProxy
Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability
Fortinet FortiOS and FortiProxy contain an authentication bypass vulnerability that allows a remote attacker to gain super-admin privileges via crafted CSF proxy requests.
Ransomware Network gear Yacht-focused Mar 18, 2025
CVE-2025-21590
Juniper
Junos OS
Juniper Junos OS Improper Isolation or Compartmentalization Vulnerability
Juniper Junos OS contains an improper isolation or compartmentalization vulnerability. This vulnerability could allows a local attacker with high privileges to inject arbitrary code.
Network gear Yacht-focused Mar 13, 2025
CVE-2025-22226
VMware
ESXi, Workstation, and Fusion
VMware ESXi, Workstation, and Fusion Information Disclosure Vulnerability
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. Successful exploitation allows an attacker with administrative privileges to a virtual machine to leak memory from the vmx process.
Enterprise stack Yacht-focused Mar 4, 2025
CVE-2025-22225
VMware
ESXi
VMware ESXi Arbitrary Write Vulnerability
VMware ESXi contains an arbitrary write vulnerability. Successful exploitation allows an attacker with privileges within the VMX process to trigger an arbitrary kernel write leading to an escape of the sandbox.
Ransomware Enterprise stack Yacht-focused Mar 4, 2025
CVE-2025-22224
VMware
ESXi and Workstation
VMware ESXi and Workstation TOCTOU Race Condition Vulnerability
VMware ESXi and Workstation contain a time-of-check time-of-use (TOCTOU) race condition vulnerability that leads to an out-of-bounds write. Successful exploitation enables an attacker with local administrative privileges on a virtual machine to execute code as the virtual machine's VMX process running on the host.
Enterprise stack Yacht-focused Mar 4, 2025
CVE-2024-50302
Linux
Kernel
Linux Kernel Use of Uninitialized Resource Vulnerability
The Linux kernel contains a use of uninitialized resource vulnerability that allows an attacker to leak kernel memory via a specially crafted HID report.
Server OS / DB / Web Yacht-focused Mar 4, 2025
CVE-2023-20118
Cisco
Small Business RV Series Routers
Cisco Small Business RV Series Routers Command Injection Vulnerability
Multiple Cisco Small Business RV Series Routers contains a command injection vulnerability in the web-based management interface. Successful exploitation could allow an authenticated, remote attacker to gain root-level privileges and access unauthorized data.
Network gear Yacht-focused Mar 3, 2025
CVE-2017-3066
Adobe
ColdFusion
Adobe ColdFusion Deserialization Vulnerability
Adobe ColdFusion contains a deserialization vulnerability in the Apache BlazeDS library that allows for arbitrary code execution.
Server OS / DB / Web Yacht-focused Feb 24, 2025
CVE-2025-0111
Palo Alto Networks
PAN-OS
Palo Alto Networks PAN-OS File Read Vulnerability
Palo Alto Networks PAN-OS contains an external control of file name or path vulnerability. Successful exploitation enables an authenticated attacker with network access to the management web interface to read files on the PAN-OS filesystem that are readable by the “nobody” user.
Network gear Yacht-focused Feb 20, 2025
CVE-2025-0108
Palo Alto Networks
PAN-OS
Palo Alto Networks PAN-OS Authentication Bypass Vulnerability
Palo Alto Networks PAN-OS contains an authentication bypass vulnerability in its management web interface. This vulnerability allows an unauthenticated attacker with network access to the management web interface to bypass the authentication normally required and invoke certain PHP scripts.
Network gear Yacht-focused Feb 18, 2025
CVE-2024-53704
SonicWall
SonicOS
SonicWall SonicOS SSLVPN Improper Authentication Vulnerability
SonicWall SonicOS contains an improper authentication vulnerability in the SSLVPN authentication mechanism that allows a remote attacker to bypass authentication.
Ransomware Network gear VPN / Remote access Yacht-focused Feb 18, 2025
CVE-2024-40891
Zyxel
DSL CPE Devices
Zyxel DSL CPE OS Command Injection Vulnerability
Multiple Zyxel DSL CPE devices contain a post-authentication command injection vulnerability in the management commands that could allow an authenticated attacker to execute OS commands via Telnet.
Network gear Yacht-focused Feb 11, 2025
CVE-2024-40890
Zyxel
DSL CPE Devices
Zyxel DSL CPE OS Command Injection Vulnerability
Multiple Zyxel DSL CPE devices contain a post-authentication command injection vulnerability in the CGI program that could allow an authenticated attacker to execute OS commands via a crafted HTTP request.
Network gear Yacht-focused Feb 11, 2025
CVE-2025-0994
Trimble
Cityworks
Trimble Cityworks Deserialization Vulnerability
Trimble Cityworks contains a deserialization vulnerability. This could allow an authenticated user to perform a remote code execution attack against a customer's Microsoft Internet Information Services (IIS) web server.
Server OS / DB / Web Yacht-focused Feb 7, 2025
CVE-2020-15069
Sophos
XG Firewall
Sophos XG Firewall Buffer Overflow Vulnerability
Sophos XG Firewall contains a buffer overflow vulnerability that allows for remote code execution via the "HTTP/S bookmark" feature.
Network gear Yacht-focused Feb 6, 2025
CVE-2020-29574
Sophos
CyberoamOS
CyberoamOS (CROS) SQL Injection Vulnerability
CyberoamOS (CROS) contains a SQL injection vulnerability in the WebAdmin that allows an unauthenticated attacker to execute arbitrary SQL statements remotely.
Network gear Yacht-focused Feb 6, 2025
CVE-2024-21413
Microsoft
Office Outlook
Microsoft Outlook Improper Input Validation Vulnerability
Microsoft Outlook contains an improper input validation vulnerability that allows for remote code execution. Successful exploitation of this vulnerability would allow an attacker to bypass the Office Protected View and open in editing mode rather than protected mode.
M365 / Email Yacht-focused Feb 6, 2025
CVE-2024-53104
Linux
Kernel
Linux Kernel Out-of-Bounds Write Vulnerability
Linux kernel contains an out-of-bounds write vulnerability in the uvc_parse_streaming component of the USB Video Class (UVC) driver that could allow for physical escalation of privilege.
Server OS / DB / Web Yacht-focused Feb 5, 2025
CVE-2024-45195
Apache
OFBiz
Apache OFBiz Forced Browsing Vulnerability
Apache OFBiz contains a forced browsing vulnerability that allows a remote attacker to obtain unauthorized access.
Server OS / DB / Web Yacht-focused Feb 4, 2025
CVE-2025-23006
SonicWall
SMA1000 Appliances
SonicWall SMA1000 Appliances Deserialization Vulnerability
SonicWall SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC) contain a deserialization of untrusted data vulnerability, which can enable a remote, unauthenticated attacker to execute arbitrary OS commands.
Ransomware Network gear Yacht-focused Jan 24, 2025
CVE-2024-55591
Fortinet
FortiOS and FortiProxy
Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability
Fortinet FortiOS and FortiProxy contain an authentication bypass vulnerability that may allow an unauthenticated, remote attacker to gain super-admin privileges via crafted requests to Node.js websocket module.
Ransomware Network gear Yacht-focused Jan 14, 2025
CVE-2025-0282
Ivanti
Connect Secure, Policy Secure, and ZTA Gateways
Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
Ivanti Connect Secure, Policy Secure, and ZTA Gateways contain a stack-based buffer overflow which can lead to unauthenticated remote code execution.
Ransomware VPN / Remote access Yacht-focused Jan 8, 2025
CVE-2020-2883
Oracle
WebLogic Server
Oracle WebLogic Server Unspecified Vulnerability
Oracle WebLogic Server, a product within the Fusion Middleware suite, contains an unspecified vulnerability exploitable by an unauthenticated attacker with network access via IIOP or T3.
Enterprise stack Yacht-focused Jan 7, 2025
CVE-2024-3393
Palo Alto Networks
PAN-OS
Palo Alto Networks PAN-OS Malicious DNS Packet Vulnerability
Palo Alto Networks PAN-OS contains a vulnerability in parsing and logging malicious DNS packets in the DNS Security feature that, when exploited, allows an unauthenticated attacker to remotely reboot the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.
Network gear Yacht-focused Dec 30, 2024
CVE-2021-40407
Reolink
RLC-410W IP Camera
Reolink RLC-410W IP Camera OS Command Injection Vulnerability
Reolink RLC-410W IP cameras contain an authenticated OS command injection vulnerability in the device network settings functionality.
IoT Yacht-focused Dec 18, 2024
CVE-2019-11001
Reolink
Multiple IP Cameras
Reolink Multiple IP Cameras OS Command Injection Vulnerability
Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W IP cameras contain an authenticated OS command injection vulnerability. This vulnerability allows an authenticated admin to use the "TestEmail" functionality to inject and run OS commands as root.
IoT Yacht-focused Dec 18, 2024
CVE-2024-11667
Zyxel
Multiple Firewalls
Zyxel Multiple Firewalls Path Traversal Vulnerability
Multiple Zyxel firewalls contain a path traversal vulnerability in the web management interface that could allow an attacker to download or upload files via a crafted URL.
Ransomware Network gear Yacht-focused Dec 3, 2024
CVE-2023-28461
Array Networks
AG/vxAG ArrayOS
Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability
Array Networks AG and vxAG ArrayOS contain a missing authentication for critical function vulnerability that allows an attacker to read local files and execute code on the SSL VPN gateway.
Ransomware VPN / Remote access Yacht-focused Nov 25, 2024
CVE-2024-38813
VMware
vCenter Server
VMware vCenter Server Privilege Escalation Vulnerability
VMware vCenter contains an improper check for dropped privileges vulnerability. This vulnerability could allow an attacker with network access to the vCenter Server to escalate privileges to root by sending a specially crafted packet.
Enterprise stack Yacht-focused Nov 20, 2024
CVE-2024-38812
VMware
vCenter Server
VMware vCenter Server Heap-Based Buffer Overflow Vulnerability
VMware vCenter Server contains a heap-based buffer overflow vulnerability in the implementation of the DCERPC protocol. This vulnerability could allow an attacker with network access to the vCenter Server to execute remote code by sending a specially crafted packet.
Enterprise stack Yacht-focused Nov 20, 2024
CVE-2024-9474
Palo Alto Networks
PAN-OS
Palo Alto Networks PAN-OS Management Interface OS Command Injection Vulnerability
Palo Alto Networks PAN-OS contains an OS command injection vulnerability that allows for privilege escalation through the web-based management interface for several PAN products, including firewalls and VPN concentrators.
Ransomware Network gear Yacht-focused Nov 18, 2024
CVE-2024-0012
Palo Alto Networks
PAN-OS
Palo Alto Networks PAN-OS Management Interface Authentication Bypass Vulnerability
Palo Alto Networks PAN-OS contains an authentication bypass vulnerability in the web-based management interface for several PAN-OS products, including firewalls and VPN concentrators.
Ransomware Network gear Yacht-focused Nov 18, 2024
CVE-2024-9465
Palo Alto Networks
Expedition
Palo Alto Networks Expedition SQL Injection Vulnerability
Palo Alto Networks Expedition contains a SQL injection vulnerability that allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. With this, attackers can also create and read arbitrary files on the Expedition system.
Network gear Yacht-focused Nov 14, 2024
CVE-2024-9463
Palo Alto Networks
Expedition
Palo Alto Networks Expedition OS Command Injection Vulnerability
Palo Alto Networks Expedition contains an OS command injection vulnerability that allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords, device configurations, and device API keys of PAN-OS firewalls.
Network gear Yacht-focused Nov 14, 2024
CVE-2021-26086
Atlassian
Jira Server and Data Center
Atlassian Jira Server and Data Center Path Traversal Vulnerability
Atlassian Jira Server and Data Center contain a path traversal vulnerability that allows a remote attacker to read particular files in the /WEB-INF/web.xml endpoint.
Enterprise stack Yacht-focused Nov 12, 2024
CVE-2014-2120
Cisco
Adaptive Security Appliance (ASA)
Cisco Adaptive Security Appliance (ASA) Cross-Site Scripting (XSS) Vulnerability
Cisco Adaptive Security Appliance (ASA) contains a cross-site scripting (XSS) vulnerability in the WebVPN login page. This vulnerability allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.
Network gear Yacht-focused Nov 12, 2024
CVE-2024-5910
Palo Alto Networks
Expedition
Palo Alto Networks Expedition Missing Authentication Vulnerability
Palo Alto Networks Expedition contains a missing authentication vulnerability that allows an attacker with network access to takeover an Expedition admin account and potentially access configuration secrets, credentials, and other data.
Network gear Yacht-focused Nov 7, 2024
CVE-2024-20481
Cisco
Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)
Cisco ASA and FTD Denial-of-Service Vulnerability
Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain a missing release of resource after effective lifetime vulnerability that could allow an unauthenticated, remote attacker to cause a denial-of-service (DoS) of the RAVPN service.
Network gear Yacht-focused Oct 24, 2024
CVE-2024-47575
Fortinet
FortiManager
Fortinet FortiManager Missing Authentication Vulnerability
Fortinet FortiManager contains a missing authentication vulnerability in the fgfmd daemon that allows a remote, unauthenticated attacker to execute arbitrary code or commands via specially crafted requests.
Network gear Yacht-focused Oct 23, 2024
CVE-2024-38094
Microsoft
SharePoint
Microsoft SharePoint Deserialization Vulnerability
Microsoft SharePoint contains a deserialization vulnerability that allows for remote code execution.
Ransomware M365 / Email Yacht-focused Oct 22, 2024
CVE-2024-40711
Veeam
Backup & Replication
Veeam Backup and Replication Deserialization Vulnerability
Veeam Backup and Replication contains a deserialization vulnerability allowing an unauthenticated user to perform remote code execution.
Ransomware Enterprise stack Yacht-focused Oct 17, 2024
CVE-2024-23113
Fortinet
Multiple Products
Fortinet Multiple Products Format String Vulnerability
Fortinet FortiOS, FortiPAM, FortiProxy, and FortiWeb contain a format string vulnerability that allows a remote, unauthenticated attacker to execute arbitrary code or commands via specially crafted requests.
Network gear Yacht-focused Oct 9, 2024
CVE-2023-25280
D-Link
DIR-820 Router
D-Link DIR-820 Router OS Command Injection Vulnerability
D-Link DIR-820 routers contain an OS command injection vulnerability that allows a remote, unauthenticated attacker to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.
Network gear Yacht-focused Sep 30, 2024
CVE-2020-14644
Oracle
WebLogic Server
Oracle WebLogic Server Remote Code Execution Vulnerability
Oracle WebLogic Server, a product within the Fusion Middleware suite, contains a deserialization vulnerability. Unauthenticated attackers with network access via T3 or IIOP can exploit this vulnerability to achieve remote code execution.
Enterprise stack Yacht-focused Sep 18, 2024
CVE-2024-27348
Apache
HugeGraph-Server
Apache HugeGraph-Server Improper Access Control Vulnerability
Apache HugeGraph-Server contains an improper access control vulnerability that could allow a remote attacker to execute arbitrary code.
Server OS / DB / Web Yacht-focused Sep 18, 2024

Source: CISA Known Exploited Vulnerabilities catalog. Updated hourly. Want crew who know what to do when one of these lands aboard? Start the free crew course →

Enroll your yacht

Ready to harden your crew's
cyber posture?

Contact us +1.754.600.8735