<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/categories/rmm.xml</id>
  <title>Exploit Radar: Remote monitoring and management (RMM)</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities in the “Remote monitoring and management (RMM)” category (indicative classification).</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/categories/rmm.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/produits/rmm/"/>
  <updated>2026-09-11T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-84869/</id>
    <title>CVE-2026-84869 — ConnectWise ScreenConnect</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-84869/"/>
    <updated>2026-09-11T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ConnectWise; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on September 11, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-86218/</id>
    <title>CVE-2026-86218 — N-able N-central</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-86218/"/>
    <updated>2026-09-08T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from N-able; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on September 8, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-18556/</id>
    <title>CVE-2026-18556 — N-able N-central</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-18556/"/>
    <updated>2026-08-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from N-able; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 4, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-18577/</id>
    <title>CVE-2026-18577 — N-able N-central</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-18577/"/>
    <updated>2026-08-03T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from N-able; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 3, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-48558/</id>
    <title>CVE-2026-48558 — SimpleHelp</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-48558/"/>
    <updated>2026-06-29T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SimpleHelp; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on June 29, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-1708/</id>
    <title>CVE-2024-1708 — ConnectWise ScreenConnect</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-1708/"/>
    <updated>2026-04-28T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ConnectWise; if none are available, stop using the product. For cloud services, follow the guidance from ConnectWise. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 28, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-57726/</id>
    <title>CVE-2024-57726 — SimpleHelp</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-57726/"/>
    <updated>2026-04-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SimpleHelp; if none are available, stop using the product. For cloud services, follow the guidance from SimpleHelp. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 24, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-57728/</id>
    <title>CVE-2024-57728 — SimpleHelp</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-57728/"/>
    <updated>2026-04-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SimpleHelp; if none are available, stop using the product. For cloud services, follow the guidance from SimpleHelp. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 24, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-1731/</id>
    <title>CVE-2026-1731 — BeyondTrust Remote Support / Privileged Remote Access (RS / PRA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-1731/"/>
    <updated>2026-02-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from BeyondTrust; if none are available, stop using the product. For cloud services, follow the guidance from BeyondTrust. CISA deadline: 3 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-8876/</id>
    <title>CVE-2025-8876 — N-able N-central</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-8876/"/>
    <updated>2025-08-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from N-able; if none are available, stop using the product. For cloud services, follow the guidance from N-able. CISA deadline: 7 days. Added to CISA’s catalog of exploited vulnerabilities on August 13, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-8875/</id>
    <title>CVE-2025-8875 — N-able N-central</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-8875/"/>
    <updated>2025-08-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from N-able; if none are available, stop using the product. For cloud services, follow the guidance from N-able. CISA deadline: 7 days. Added to CISA’s catalog of exploited vulnerabilities on August 13, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-3935/</id>
    <title>CVE-2025-3935 — ConnectWise ScreenConnect</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-3935/"/>
    <updated>2025-06-02T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ConnectWise; if none are available, stop using the product. For cloud services, follow the guidance from ConnectWise. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on June 2, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-57727/</id>
    <title>CVE-2024-57727 — SimpleHelp</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-57727/"/>
    <updated>2025-02-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SimpleHelp; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 13, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-12686/</id>
    <title>CVE-2024-12686 — BeyondTrust Remote Support / Privileged Remote Access (RS / PRA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-12686/"/>
    <updated>2025-01-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from BeyondTrust; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 13, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-12356/</id>
    <title>CVE-2024-12356 — BeyondTrust Remote Support / Privileged Remote Access (RS / PRA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-12356/"/>
    <updated>2024-12-19T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from BeyondTrust; if none are available, stop using the product. CISA deadline: 8 days. Added to CISA’s catalog of exploited vulnerabilities on December 19, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-1709/</id>
    <title>CVE-2024-1709 — ConnectWise ScreenConnect</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-1709/"/>
    <updated>2024-02-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ConnectWise; if none are available, stop using the product. CISA deadline: 7 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 22, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-18362/</id>
    <title>CVE-2017-18362 — Kaseya VSA</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-18362/"/>
    <updated>2022-05-24T00:00:00Z</updated>
    <summary type="text">This product has reached end of life: no patch is coming. Remove it or isolate it from the network. CISA deadline: 21 days. Used in ransomware campaigns. End of life: remove it. Added to CISA’s catalog of exploited vulnerabilities on May 24, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-20753/</id>
    <title>CVE-2018-20753 — Kaseya VSA</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-20753/"/>
    <updated>2022-04-13T00:00:00Z</updated>
    <summary type="text">Apply the security update from Kaseya. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 13, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-30116/</id>
    <title>CVE-2021-30116 — Kaseya VSA</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-30116/"/>
    <updated>2021-11-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Kaseya. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on November 3, 2021.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-18988/</id>
    <title>CVE-2019-18988 — TeamViewer Desktop</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-18988/"/>
    <updated>2021-11-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from TeamViewer. CISA deadline: 181 days. Added to CISA’s catalog of exploited vulnerabilities on November 3, 2021.</summary>
  </entry>
</feed>
