Oct 18, 2023 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Citrix NetScaler ADC And NetScaler Gateway added to CISA KEV — confirmed in-the-wild exploitation.
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical active threat

CVE-2023-4966 Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow

  • Actively exploited (CISA KEV)
  • Listed on CISA KEV

Citrix NetScaler ADC And NetScaler Gateway Buffer Overflow is on CISA KEV — confirmed in-the-wild exploitation. Expect continued targeting while the issue remains on the catalog.

Critical exposure

CVE-2023-35084 Ivanti Endpoint Manager Deserialization

  • CVSS 9.8

New critical Ivanti Endpoint Manager Deserialization (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2023-39332 Various `node:fs` functions allow specifying paths as either strings or `Uint8Array` objects.

  • CVSS 9.8

New critical Fedoraproject Fedora Path Traversal (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2023-35084 CVSS 9.8

Unsafe Deserialization of User Input could lead to Execution of Unauthorized Operations in Ivanti Endpoint Manager 2022 su3 and all previ...

HCL Compass is vulnerable to lack of file upload security.

CVE-2023-38545 CVSS 9.8

This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake.

CVE-2023-39332 CVSS 9.8

Various `node:fs` functions allow specifying paths as either strings or `Uint8Array` objects.

XXL-RPC is a high performance, distributed RPC framework.

CVE-2023-45911 CVSS 9.8

An issue in WIPOTEC GmbH ComScale v4.3.29.21344 and v4.4.12.723 allows unauthenticated attackers to login as any user without a password.

CVE-2023-46005 CVSS 9.8

Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_branch.php.

CVE-2023-46006 CVSS 9.8

Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_user.php.

CVE-2023-46007 CVSS 9.8

Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_staff.php.

CVE-2023-5642 CVSS 9.8

Advantech R-SeeNet v2.4.23 allows an unauthenticated remote attacker to read from and write to the snmpmon.ini file, which contains sensi...

View critical disclosures

cvelogic Threat Intelligence