Tag : 2024-07-17

5 attack reports | 84 vulnerabilities

Attack Reports

Title Published Tags Description Number of indicators
Private HTS Program Continuously Used in Attacks July 17, 2024, 2:19 p.m. This report outlines a continuous campaign where a threat actor distributes malware, including Quasar RAT, through a private home… 1
FIN7 Reboot | Cybercrime Gang Enhances Ops with New EDR Bypasses and Automated Attacks July 17, 2024, 1:57 p.m. This report provides an in-depth analysis of the FIN7 cybercrime group's evolving tactics, techniques, and procedures. It highlig… 99
Suspected Cyber Espionage Campaign Targeting Global Organizations July 17, 2024, 12:45 p.m. An analysis identified a suspected cyber espionage campaign by TAG-100, a threat group exploiting internet-facing devices and uti… 25
'Evil Twin' Apps Spread for Multiple Fraud Schemes July 17, 2024, 10:52 a.m. HUMAN's Satori Threat Intelligence and Research team recently uncovered a massive ad fraud operation dubbed Konfety, involving th… 0
Who You Gonna Call? AndroxGh0st Busters! July 17, 2024, 7:34 a.m. This report discusses the AndroxGh0st malware, a Python-scripted threat targeting Laravel web applications to steal sensitive dat… 7

Vulnerabilities

CVE CVSS Published Product impacted Tags
CVE-2024-20419 10.0 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Smart Software Manager On-Prem
CVE-2024-6220 9.8 July 17, 2024, 8:15 a.m. LOGO-VULNERABLEWordPress 简数采集器 (Keydatas) plugin
CVE-2024-20401 9.8 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Secure Email Gateway
CVE-2024-23466 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager (ARM)
CVE-2024-23467 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-23469 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager (ARM)
CVE-2024-23470 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-23471 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-23472 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager (ARM)
CVE-2024-23475 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-28074 9.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-6834 9.0 July 17, 2024, 3:15 p.m. LOGO-VULNERABLEAPIML Spring Cloud Gateway
CVE-2024-6467 8.8 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEBookingPress - Appointment Booking Calendar Plugin and Online Scheduling Plugin
CVE-2024-6660 8.8 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEBookingPress - Appointment Booking Calendar Plugin and Online Scheduling Plugin
CVE-2024-5471 8.8 July 17, 2024, 11:15 a.m. LOGO-VULNERABLEZohocorp ManageEngine DDI Central
CVE-2024-20435 8.8 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco AsyncOS for Secure Web Appliance
CVE-2023-7272 8.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLEEclipse Parsson
CVE-2024-23465 8.3 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-23468 7.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-23474 7.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-28992 7.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-28993 7.6 July 17, 2024, 3:15 p.m. LOGO-VULNERABLESolarWinds Access Rights Manager
CVE-2024-20323 7.5 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Intelligent Node (iNode) Software
CVE-2024-40641 7.4 July 17, 2024, 6:15 p.m. LOGO-VULNERABLENuclei
CVE-2024-20416 6.5 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco RV340 Dual WAN Gigabit VPN Router
CVE-2024-20429 6.5 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco AsyncOS for Secure Email Gateway
CVE-2024-5251 6.4 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEUltimate Addons for WPBakery
CVE-2024-5252 6.4 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEUltimate Addons for WPBakery plugin for WordPress
CVE-2024-5253 6.4 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEUltimate Addons for WPBakery
CVE-2024-5254 6.4 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEUltimate Addons for WPBakery plugin for WordPress
CVE-2024-5255 6.4 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEUltimate Addons for WPBakery
CVE-2024-5582 6.4 July 17, 2024, 8:15 a.m. LOGO-VULNERABLESchema & Structured Data for WP & AMP plugin for WordPress
CVE-2024-20395 6.4 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Webex App
CVE-2024-28796 6.4 July 17, 2024, 7:15 p.m. LOGO-VULNERABLEIBM ClearQuest
CVE-2024-6801 6.3 July 17, 2024, 2:15 a.m. LOGO-VULNERABLESourceCodester Online Student Management System
CVE-2024-6802 6.3 July 17, 2024, 2:15 a.m. LOGO-VULNERABLESourceCodester Computer Laboratory Management System
CVE-2024-6808 6.3 July 17, 2024, 4:15 a.m. LOGO-VULNERABLESimple Task List
CVE-2024-6830 6.3 July 17, 2024, 4:15 p.m. LOGO-VULNERABLESimple Inventory Management System
CVE-2024-6535 5.9 July 17, 2024, 3:15 a.m. LOGO-VULNERABLESkupper
CVE-2024-6833 5.9 July 17, 2024, 3:15 p.m. LOGO-VULNERABLEZowe CLI
CVE-2024-6803 5.5 July 17, 2024, 3:15 a.m. LOGO-VULNERABLEitsourcecode Document Management System
CVE-2024-6669 5.5 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEChatBot for WordPress – WPBot plugin
CVE-2024-27311 5.5 July 17, 2024, 11:15 a.m. LOGO-VULNERABLEZohocorp ManageEngine DDI Central
CVE-2024-32981 5.4 July 17, 2024, 8:15 p.m. LOGO-VULNERABLESilverstripe framework
CVE-2024-20396 5.3 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Webex App
CVE-2024-40633 5.3 July 17, 2024, 6:15 p.m. LOGO-VULNERABLESylius
CVE-2024-40636 5.3 July 17, 2024, 6:15 p.m. LOGO-VULNERABLESteeltoe.Discovery.Eureka
CVE-2024-20296 4.7 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Identity Services Engine (ISE)
CVE-2024-20400 4.7 July 17, 2024, 5:15 p.m. LOGO-VULNERABLECisco Expressway Series
CVE-2024-6033 4.3 July 17, 2024, 7:15 a.m. LOGO-VULNERABLEEventin plugin for WordPress
CVE-2024-5703 4.3 July 17, 2024, 8:15 a.m. LOGO-VULNERABLEEmail Subscribers by Icegram Express - Email Marketing, Newsletters, Automation for WordPress & WooCommerce
CVE-2024-29885 4.3 July 17, 2024, 8:15 p.m. LOGO-VULNERABLESilverstripe Framework
CVE-2024-38870 3.5 July 17, 2024, 5:15 p.m. LOGO-VULNERABLEZohocorp ManageEngine OpManager
CVE-2023-42010 3.1 July 17, 2024, 6:15 p.m. LOGO-VULNERABLEIBM Sterling B2B Integrator Standard Edition
CVE-2024-6595 3.0 July 17, 2024, 2:15 a.m. LOGO-VULNERABLEGitLab CE/EE
CVE-2024-40640 2.9 July 17, 2024, 6:15 p.m. LOGO-VULNERABLEvodozemac
CVE-2024-6807 2.4 July 17, 2024, 4:15 a.m. LOGO-VULNERABLESourceCodester Student Study Center Desk Management System
CVE-2024-41009 None July 17, 2024, 7:15 a.m. LOGO-VULNERABLELinux Kernel
CVE-2024-41010 None July 17, 2024, 7:15 a.m. LOGO-VULNERABLELinux kernel
CVE-2024-39863 None July 17, 2024, 8:15 a.m. LOGO-VULNERABLEApache Airflow
CVE-2024-39877 None July 17, 2024, 8:15 a.m. LOGO-VULNERABLEApache Airflow
CVE-2023-52291 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEstreampark
CVE-2024-29737 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEstreampark
CVE-2024-30471 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEApache StreamPipes
CVE-2024-31070 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEFutureNet NXR series
CVE-2024-31979 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEApache StreamPipes
CVE-2024-36475 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEFutureNet NXR series
CVE-2024-36491 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEFutureNet NXR series
CVE-2024-40617 None July 17, 2024, 9:15 a.m. LOGO-VULNERABLEFUJITSU Network Edgiot GW1500 (M2M-GW for FENICS)
CVE-2024-31411 None July 17, 2024, 10:15 a.m. LOGO-VULNERABLEApache StreamPipes
CVE-2024-6765 None July 17, 2024, 2:15 p.m. LOGO-VULNERABLEUNKNOWN
CVE-2024-29120 None July 17, 2024, 3:15 p.m. LOGO-VULNERABLEStreampark
CVE-2023-4976 None July 17, 2024, 4:15 p.m. LOGO-VULNERABLEPurity//FB
CVE-2024-38446 None July 17, 2024, 5:15 p.m. LOGO-VULNERABLEUNKNOWN
CVE-2024-38447 None July 17, 2024, 6:15 p.m. LOGO-VULNERABLENATO NCI ANET
CVE-2024-40639 None July 17, 2024, 6:15 p.m. LOGO-VULNERABLEGotenberg
CVE-2024-40420 None July 17, 2024, 7:15 p.m. LOGO-VULNERABLEopenCart
CVE-2024-39124 None July 17, 2024, 8:15 p.m. LOGO-VULNERABLERoundup
CVE-2024-39125 None July 17, 2024, 8:15 p.m. LOGO-VULNERABLERoundup
CVE-2024-39126 None July 17, 2024, 8:15 p.m. LOGO-VULNERABLERoundup
CVE-2024-40119 None July 17, 2024, 8:15 p.m. LOGO-VULNERABLENepstech Wifi Router Xpon (Terminal) Model NTPL-Xpon1GFEVN
CVE-2024-40402 None July 17, 2024, 8:15 p.m. LOGO-VULNERABLESimple Library Management System
CVE-2023-43971 None July 17, 2024, 10:15 p.m. LOGO-VULNERABLEACG-faka
CVE-2024-40492 None July 17, 2024, 10:15 p.m. LOGO-VULNERABLEHeartbeat Chat