Feb 13, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • SimpleHelp added to CISA KEV — confirmed in-the-wild exploitation.
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical active threat

CVE-2024-57727 SimpleHelp Path Traversal

  • Actively exploited (CISA KEV)
  • Listed on CISA KEV

SimpleHelp Path Traversal is on CISA KEV — confirmed in-the-wild exploitation. Expect continued targeting while the issue remains on the catalog.

Critical exposure

CVE-2025-24865 Myscada Mypro

  • CVSS 10

New critical disclosure (CVSS 10) — high severity with a short public awareness window before exploit material typically surfaces.

Critical exposure

CVE-2025-25388 Phpgurukul Land Record System SQL Injection

  • CVSS 9.8

New critical Phpgurukul Land Record System SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2023-34399 CVSS 9.8

Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB.

CVE-2024-13182 CVSS 9.8

The WP Directorybox Manager plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.5.

CVE-2025-1127 CVSS 9.1

The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user and/or modify the contents of any dat...

CVE-2025-1270 CVSS 9.1

Insecure direct object reference (IDOR) vulnerability in Anapi Group's h6web, allows an authenticated attacker to access other users' inf...

CVE-2025-1283 CVSS 9.3

The Dingtian DT-R0 Series is vulnerable to an exploit that allows attackers to bypass login requirements by directly navigating to the ma...

CVE-2025-22896 CVSS 9.2

mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information.

CVE-2025-24865 CVSS 10

The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attack...

CVE-2025-25067 CVSS 9.3

mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to execute arbitrary OS commands.

CVE-2025-25388 CVSS 9.8

A SQL Injection vulnerability was found in /admin/edit-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attack...

CVE-2025-25389 CVSS 9.8

A SQL Injection vulnerability was found in /admin/forgot-password.php in Phpgurukul Land Record System v1.0, which allows remote attacker...

View critical disclosures

cvelogic Threat Intelligence