Dec 28, 2021 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 7 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2019-20082 Asus Rt-n53 Firmware Buffer Overflow

  • CVSS 9.8

New critical Asus Rt-n53 Firmware Buffer Overflow (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2020-7883 Wowsoft Printchaser Code Execution

  • CVSS 9.8
  • Remote code execution exposure

New critical Wowsoft Printchaser Code Execution (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2021-45814 Nettmp NNT 5.1 is affected by a SQL injection vulnerability.

  • CVSS 9.8

New critical Nettemp Nnt SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2019-20082 CVSS 9.8

ASUS RT-N53 3.0.0.4.376.3754 devices have a buffer overflow via a long lan_dns1_x or lan_dns2_x parameter to Advanced_LAN_Content.asp.

CVE-2020-22057 CVSS 9.1

The WinRin0x64.sys and WinRing0.sys low-level drivers in EVGA Precision XOC version v6.2.7 were discovered to be configured with the defa...

CVE-2020-7878 CVSS 9.8

An arbitrary file download and execution vulnerability was found in the VideoOffice X2.9 and earlier versions (CVE-2020-7878).

CVE-2020-7883 CVSS 9.8

Printchaser v2.2021.804.1 and earlier versions contain a vulnerability, which could allow remote attacker to download and execute remote...

CVE-2021-37400 CVSS 9.8

An attacker may obtain the user credentials from the communication between the PLC and the software.

CVE-2021-37401 CVSS 9.8

An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards.

CVE-2021-45814 CVSS 9.8

Nettmp NNT 5.1 is affected by a SQL injection vulnerability.

View critical disclosures

cvelogic Threat Intelligence