Aug 10, 2021 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Gestionaleamica Amica Prodigy: public exploit or PoC linked (privilege escalation)
  • 6 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2020-35847 Agentejo Cockpit SQL Injection

  • Public exploit or PoC available
  • Exploit activity linked

Agentejo Cockpit SQL Injection now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Active exploit activity

CVE-2020-35848 Agentejo Cockpit SQL Injection

  • Public exploit or PoC available
  • Exploit activity linked

Agentejo Cockpit SQL Injection now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2021-20032 Sonicwall Analytics RCE

  • CVSS 9.8
  • Remote code execution exposure

New critical Sonicwall Analytics RCE (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2021-35312 Exploit

A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7.

CVE-2020-35847 Exploit

Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php resetpassword function.

CVE-2020-35848 Exploit

Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php newpassword function.

CVE-2018-20523 Exploit

Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones allows content provider injection.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2021-20032 CVSS 9.8

SonicWall Analytics 2.5 On-Prem is vulnerable to Java Debug Wire Protocol (JDWP) interface security misconfiguration vulnerability which...

CVE-2021-32943 CVSS 9.8

The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code on th...

CVE-2021-37425 CVSS 9.1

Altova MobileTogether Server before 7.3 SP1 allows XXE attacks, such as an InfoSetChanges/Changes attack against /workflowmanagement, or...

CVE-2021-38140 CVSS 9.8

The set_user extension module before 2.0.1 for PostgreSQL allows a potential privilege escalation using RESET SESSION AUTHORIZATION after...

CVE-2021-38383 CVSS 9.8

OwnTone (aka owntone-server) through 28.1 has a use-after-free in net_bind() in misc.c.

CVE-2021-38384 CVSS 9.8

Serverless Offline 8.0.0 returns a 403 HTTP status code for a route that has a trailing / character, which might cause a developer to imp...

View critical disclosures

cvelogic Threat Intelligence