Jul 20, 2023 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Adobe ColdFusion: 2 CVEs added to CISA KEV today.
  • Wifi-soft Unibox Administration: public exploit or PoC linked (SQL Injection)
  • 5 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical active threat

CVE-2023-29298 Adobe ColdFusion Improper Access Control

  • Actively exploited (CISA KEV)
  • Listed on CISA KEV

Confirmed in-the-wild exploitation per CISA KEV — active threat momentum, not theoretical risk.

Active exploit activity

CVE-2023-27253 Netgate Pfsense Command Injection

  • Public exploit or PoC available
  • Exploit activity linked

Netgate Pfsense Command Injection now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2023-31753 Endonesia SQL Injection

  • CVSS 9.8

New critical Endonesia SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

View KEV additions

Exploit & PoC activity

CVE-2023-38357 Exploit

Session tokens in RWS WorldServer 11.7.3 and earlier have a low entropy and can be enumerated, leading to unauthorized access to user ses...

CVE-2023-34635 Exploit

Wifi Soft Unibox Administration 3.0 and 3.1 is vulnerable to SQL Injection.

CVE-2023-33148 Exploit

Microsoft Office Elevation of Privilege Vulnerability

CVE-2023-27253 Exploit

A command injection vulnerability in the function restore_rrddata() of Netgate pfSense v2.7.0 allows authenticated attackers to execute a...

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2023-31753 CVSS 9.8

SQL injection vulnerability in diskusi.php in eNdonesia 8.7, allows an attacker to execute arbitrary SQL commands via the "rid=" parameter.

CVE-2023-37165 CVSS 9.8

Millhouse-Project v1.414 was discovered to contain a remote code execution (RCE) vulnerability via the component /add_post_sql.php.

CVE-2023-37471 CVSS 9.1

Open Access Management (OpenAM) is an access management solution that includes Authentication, SSO, Authorization, Federation, Entitlemen...

CVE-2023-38203 CVSS 9.8

Adobe ColdFusion Deserialization of Untrusted Data

CVE-2023-38632 CVSS 9.8

async-sockets-cpp through 0.3.1 has a stack-based buffer overflow in tcpsocket.hpp when processing malformed TCP packets.

View critical disclosures

cvelogic Threat Intelligence