Aug 2, 2022 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Troglobit Uftpd: public exploit or PoC linked (RCE)
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2020-20277 Troglobit Uftpd RCE

  • Public exploit or PoC available
  • Exploit activity linked
  • Remote code execution exposure

Troglobit Uftpd RCE now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2022-29807 Quest Kace Systems Management Appliance RCE

  • CVSS 9.8
  • Remote code execution exposure

New critical Quest Kace Systems Management Appliance RCE (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2022-35223 Easyuse Mailhunter Ultimate Deserialization

  • CVSS 9.8

New critical Easyuse Mailhunter Ultimate Deserialization (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2020-20277 Exploit

There are multiple unauthenticated directory traversal vulnerabilities in different FTP commands in uftpd FTP server versions 2.7 to 2.10...

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2020-28423 CVSS 9.8

This affects all versions of package monorepo-build.

CVE-2020-28434 CVSS 9.4

This affects all versions of package gitblame.

CVE-2020-28437 CVSS 9.4

This affects all versions of package heroku-env.

CVE-2020-28451 CVSS 9.8

This affects the package image-tiler before 2.0.2.

CVE-2020-28453 CVSS 9.4

This affects all versions of package npos-tesseract.

CVE-2022-29807 CVSS 9.8

A SQL injection vulnerability exists within Quest KACE Systems Management Appliance (SMA) through 12.0 that can allow for remote code exe...

CVE-2022-30285 CVSS 9.8

In Quest KACE Systems Management Appliance (SMA) through 12.0, a hash collision is possible during authentication.

CVE-2022-34613 CVSS 9.8

Mealie 1.0.0beta3 contains an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted file.

CVE-2022-35223 CVSS 9.8

EasyUse MailHunter Ultimate’s cookie deserialization function has an inadequate validation vulnerability.

CVE-2022-35924 CVSS 9.1

NextAuth.js is a complete open source authentication solution for Next.js applications.

View critical disclosures

cvelogic Threat Intelligence