Jul 23, 2021 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Microsoft .NET Framework, SharePoint, Visual Studio: public exploit or PoC linked (RCE)
  • 8 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2020-1147 Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution

  • Public exploit or PoC available
  • Exploit activity linked
  • Remote code execution exposure

Microsoft .NET Framework, SharePoint, Visual Studio RCE now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Active exploit activity

CVE-2021-22145 A memory disclosure vulnerability was identified in Elasticsearch 7.10.0 to 7.13.3 error reporting.

  • Public exploit or PoC available
  • Exploit activity linked

Public exploit or PoC linked — exploitation bar is lower than disclosure-only CVEs.

Critical exposure

CVE-2020-14032 ASRock 4x4 BOX-R1000 before BIOS P1.40 allows privilege escalation via code execution in the SMM.

  • CVSS 9.8
  • Remote code execution exposure

New critical Asrock Box-r1000 Firmware Code Execution (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2021-22145 Exploit

A memory disclosure vulnerability was identified in Elasticsearch 7.10.0 to 7.13.3 error reporting.

CVE-2020-1147 Exploit

Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2020-14032 CVSS 9.8

ASRock 4x4 BOX-R1000 before BIOS P1.40 allows privilege escalation via code execution in the SMM.

CVE-2020-20741 CVSS 9.8

Incorrect Access Control in Beckhoff Automation GmbH & Co.

CVE-2021-24036 CVSS 9.8

Passing an attacker controlled size when creating an IOBuf could cause integer overflow, leading to an out of bounds write on the heap wi...

CVE-2021-25203 CVSS 9.8

Arbitrary file upload vulnerability in Victor CMS v 1.0 allows attackers to execute arbitrary code via the file upload to \CMSsite-master...

CVE-2021-25206 CVSS 9.8

Arbitrary file upload vulnerability in SourceCodester Responsive Ordering System v 1.0 allows attackers to execute arbitrary code via the...

CVE-2021-25207 CVSS 9.8

Arbitrary file upload vulnerability in SourceCodester E-Commerce Website v 1.0 allows attackers to execute arbitrary code via the file up...

CVE-2021-25208 CVSS 9.8

Arbitrary file upload vulnerability in SourceCodester Travel Management System v 1.0 allows attackers to execute arbitrary code via the f...

CVE-2021-3169 CVSS 9.8

An issue in Jumpserver before 2.6.2, before 2.5.4, before 2.4.5 allows attackers to create a connection token through an API which does n...

View critical disclosures

cvelogic Threat Intelligence