May 19, 2021 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • In4velocity In4suite Erp: public exploit or PoC linked (SQL Injection)
  • 5 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2021-24245 Trumani Stop Spammers XSS

  • Public exploit or PoC available
  • Exploit activity linked
  • Internet-facing CMS deployments affected

WordPress plugin exposure with public exploit material — mass targeting of internet-facing CMS installs is common once PoCs circulate.

Active exploit activity

CVE-2021-27828 In4velocity In4suite Erp SQL Injection

  • Public exploit or PoC available
  • Exploit activity linked

In4velocity In4suite Erp SQL Injection now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2017-17674 BMC Remedy Mid Tier 9.1SP3 is affected by remote and local file inclusion.

  • CVSS 9.8
  • Remote code execution exposure

New critical Bmc Remedy Mid-tier RCE (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2021-27828 Exploit

SQL injection in In4Suite ERP 3.2.74.1370 allows attackers to modify or delete data, causing persistent changes to the application's cont...

CVE-2021-24245 Exploit

The Stop Spammers WordPress plugin before 2021.9 did not escape user input when blocking requests (such as matching a spam word), outputt...

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2017-17674 CVSS 9.8

BMC Remedy Mid Tier 9.1SP3 is affected by remote and local file inclusion.

CVE-2020-36364 CVSS 9.1

An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.

CVE-2021-20720 CVSS 9.8

SQL injection vulnerability in the KonaWiki2 versions prior to 2.2.4 allows remote attackers to execute arbitrary SQL commands and to obt...

CVE-2021-20721 CVSS 9.8

KonaWiki2 versions prior to 2.2.4 allows a remote attacker to upload arbitrary files via unspecified vectors.

CVE-2021-33204 CVSS 9.8

In the pg_partman (aka PG Partition Manager) extension before 4.5.1 for PostgreSQL, arbitrary code execution can be achieved via SECURITY...

View critical disclosures

cvelogic Threat Intelligence