Aug 31, 2021 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Umbraco Cms: public exploit or PoC linked (Path Traversal)
  • 7 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2020-5811 Umbraco Cms Path Traversal

  • Public exploit or PoC available
  • Exploit activity linked

Umbraco Cms Path Traversal now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Active exploit activity

CVE-2021-34621 Properfraction Profilepress — public exploit or PoC linked.

  • Public exploit or PoC available
  • Exploit activity linked

Public exploit or PoC linked — exploitation bar is lower than disclosure-only CVEs.

Critical exposure

CVE-2021-21811 Att Xmill Buffer Overflow

  • CVSS 9.8

New critical Att Xmill Buffer Overflow (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2021-34621 Exploit

Properfraction Profilepress — public exploit or PoC linked.

CVE-2020-5811 Exploit

An authenticated path traversal vulnerability exists during package installation in Umbraco CMS <= 8.9.1 or current, which could result i...

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2021-21811 CVSS 9.8

A memory corruption vulnerability exists in the XML-parsing CreateLabelOrAttrib functionality of AT&T Labs’ Xmill 0.7.

CVE-2021-22002 CVSS 9.8

VMware Workspace ONE Access and Identity Manager, allow the /cfg web app and diagnostic endpoints, on port 8443, to be accessed via port...

CVE-2021-22943 CVSS 9.6

A vulnerability found in UniFi Protect application V1.18.1 and earlier permits a malicious actor who has already gained access to a netwo...

CVE-2021-34565 CVSS 9.8

In PEPPERL+FUCHS WirelessHART-Gateway 3.0.7 to 3.0.9 the SSH and telnet services are active with hard-coded credentials.

CVE-2021-34578 CVSS 9.8

This vulnerability allows an attacker who has access to the WBM to read and write settings-parameters of the device by sending specifical...

CVE-2021-36356 CVSS 9.8

KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accept...

CVE-2021-38145 CVSS 9.8

An issue was discovered in Form Tools through 3.0.20.

View critical disclosures

cvelogic Threat Intelligence