<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/categories/supervision-itsm.xml</id>
  <title>Exploit Radar: Monitoring, ITSM and asset management</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities in the “Monitoring, ITSM and asset management” category (indicative classification).</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/categories/supervision-itsm.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/produits/supervision-itsm/"/>
  <updated>2026-06-11T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-10520/</id>
    <title>CVE-2026-10520 — Ivanti Sentry</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-10520/"/>
    <updated>2026-06-11T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on June 11, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-6973/</id>
    <title>CVE-2026-6973 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-6973/"/>
    <updated>2026-05-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on May 7, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-32975/</id>
    <title>CVE-2025-32975 — Quest KACE Systems Management Appliance (SMA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-32975/"/>
    <updated>2026-04-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Quest; if none are available, stop using the product. For cloud services, follow the guidance from Quest. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21643/</id>
    <title>CVE-2026-21643 — Fortinet FortiClient EMS</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21643/"/>
    <updated>2026-04-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Fortinet; if none are available, stop using the product. For cloud services, follow the guidance from Fortinet. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on April 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-1340/</id>
    <title>CVE-2026-1340 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-1340/"/>
    <updated>2026-04-08T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on April 8, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-35616/</id>
    <title>CVE-2026-35616 — Fortinet FortiClient EMS</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-35616/"/>
    <updated>2026-04-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Fortinet; if none are available, stop using the product. For cloud services, follow the guidance from Fortinet. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on April 6, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-26399/</id>
    <title>CVE-2025-26399 — SolarWinds Web Help Desk</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-26399/"/>
    <updated>2026-03-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SolarWinds; if none are available, stop using the product. For cloud services, follow the guidance from SolarWinds. CISA deadline: 3 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 9, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-22054/</id>
    <title>CVE-2021-22054 — Omnissa (ex-VMware EUC) Workspace ONE UEM (AirWatch)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-22054/"/>
    <updated>2026-03-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Omnissa (ex-VMware EUC); if none are available, stop using the product. For cloud services, follow the guidance from Omnissa (ex-VMware EUC). CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on March 9, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-1603/</id>
    <title>CVE-2026-1603 — Ivanti Endpoint Manager (EPM)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-1603/"/>
    <updated>2026-03-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on March 9, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-22719/</id>
    <title>CVE-2026-22719 — VMware (Broadcom) Aria Operations (ex-vRealize Operations)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-22719/"/>
    <updated>2026-03-03T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from VMware (Broadcom); if none are available, stop using the product. For cloud services, follow the guidance from VMware (Broadcom). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 3, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-43468/</id>
    <title>CVE-2024-43468 — Microsoft Configuration Manager</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-43468/"/>
    <updated>2026-02-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 12, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-40536/</id>
    <title>CVE-2025-40536 — SolarWinds Web Help Desk</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-40536/"/>
    <updated>2026-02-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SolarWinds; if none are available, stop using the product. For cloud services, follow the guidance from SolarWinds. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on February 12, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-40551/</id>
    <title>CVE-2025-40551 — SolarWinds Web Help Desk</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-40551/"/>
    <updated>2026-02-03T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SolarWinds; if none are available, stop using the product. For cloud services, follow the guidance from SolarWinds. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on February 3, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-1281/</id>
    <title>CVE-2026-1281 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-1281/"/>
    <updated>2026-01-29T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on January 29, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-37164/</id>
    <title>CVE-2025-37164 — HPE OneView</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-37164/"/>
    <updated>2026-01-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from HPE; if none are available, stop using the product. For cloud services, follow the guidance from HPE. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 7, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-61932/</id>
    <title>CVE-2025-61932 — Motex LANSCOPE Endpoint Manager</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-61932/"/>
    <updated>2025-10-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Motex; if none are available, stop using the product. For cloud services, follow the guidance from Motex. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 22, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-7836/</id>
    <title>CVE-2016-7836 — SKYSEA Client View</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-7836/"/>
    <updated>2025-10-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SKYSEA; if none are available, stop using the product. For cloud services, follow the guidance from SKYSEA. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 14, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-43798/</id>
    <title>CVE-2021-43798 — Grafana Labs Grafana</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-43798/"/>
    <updated>2025-10-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Grafana Labs; if none are available, stop using the product. For cloud services, follow the guidance from Grafana Labs. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 9, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-2776/</id>
    <title>CVE-2025-2776 — SysAid On-Prem</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-2776/"/>
    <updated>2025-07-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SysAid; if none are available, stop using the product. For cloud services, follow the guidance from SysAid. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 22, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-2775/</id>
    <title>CVE-2025-2775 — SysAid On-Prem</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-2775/"/>
    <updated>2025-07-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SysAid; if none are available, stop using the product. For cloud services, follow the guidance from SysAid. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 22, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-4428/</id>
    <title>CVE-2025-4428 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-4428/"/>
    <updated>2025-05-19T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 19, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-4427/</id>
    <title>CVE-2025-4427 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-4427/"/>
    <updated>2025-05-19T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 19, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-20439/</id>
    <title>CVE-2024-20439 — Cisco Smart Licensing Utility</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-20439/"/>
    <updated>2025-03-31T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Cisco; if none are available, stop using the product. For cloud services, follow the guidance from Cisco. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 31, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-13159/</id>
    <title>CVE-2024-13159 — Ivanti Endpoint Manager (EPM)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-13159/"/>
    <updated>2025-03-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 10, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-13160/</id>
    <title>CVE-2024-13160 — Ivanti Endpoint Manager (EPM)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-13160/"/>
    <updated>2025-03-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 10, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-13161/</id>
    <title>CVE-2024-13161 — Ivanti Endpoint Manager (EPM)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-13161/"/>
    <updated>2025-03-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. For cloud services, follow the guidance from Ivanti. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 10, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-4885/</id>
    <title>CVE-2024-4885 — Progress WhatsUp Gold</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-4885/"/>
    <updated>2025-03-03T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Progress; if none are available, stop using the product. For cloud services, follow the guidance from Progress. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 3, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-19410/</id>
    <title>CVE-2018-19410 — Paessler PRTG Network Monitor</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-19410/"/>
    <updated>2025-02-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Paessler; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 4, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-9276/</id>
    <title>CVE-2018-9276 — Paessler PRTG Network Monitor</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-9276/"/>
    <updated>2025-02-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Paessler; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 4, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-9537/</id>
    <title>CVE-2024-9537 — ScienceLogic SL1</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-9537/"/>
    <updated>2024-10-21T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ScienceLogic; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 21, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-28987/</id>
    <title>CVE-2024-28987 — SolarWinds Web Help Desk</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-28987/"/>
    <updated>2024-10-15T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SolarWinds; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 15, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-9379/</id>
    <title>CVE-2024-9379 — Ivanti Cloud Services Appliance (CSA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-9379/"/>
    <updated>2024-10-09T00:00:00Z</updated>
    <summary type="text">This product has reached end of life: no patch is coming. Remove it or isolate it from the network. CISA deadline: 21 days. End of life: remove it. Added to CISA’s catalog of exploited vulnerabilities on October 9, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-9380/</id>
    <title>CVE-2024-9380 — Ivanti Cloud Services Appliance (CSA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-9380/"/>
    <updated>2024-10-09T00:00:00Z</updated>
    <summary type="text">This product has reached end of life: no patch is coming. Remove it or isolate it from the network. CISA deadline: 21 days. End of life: remove it. Added to CISA’s catalog of exploited vulnerabilities on October 9, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-29824/</id>
    <title>CVE-2024-29824 — Ivanti Endpoint Manager (EPM)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-29824/"/>
    <updated>2024-10-02T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 2, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-8963/</id>
    <title>CVE-2024-8963 — Ivanti Cloud Services Appliance (CSA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-8963/"/>
    <updated>2024-09-19T00:00:00Z</updated>
    <summary type="text">This product has reached end of life: no patch is coming. Remove it or isolate it from the network. CISA deadline: 21 days. End of life: remove it. Added to CISA’s catalog of exploited vulnerabilities on September 19, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-6670/</id>
    <title>CVE-2024-6670 — Progress WhatsUp Gold</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-6670/"/>
    <updated>2024-09-16T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Progress; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on September 16, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-8190/</id>
    <title>CVE-2024-8190 — Ivanti Cloud Services Appliance (CSA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-8190/"/>
    <updated>2024-09-13T00:00:00Z</updated>
    <summary type="text">This product has reached end of life: no patch is coming. Remove it or isolate it from the network. CISA deadline: 21 days. End of life: remove it. Added to CISA’s catalog of exploited vulnerabilities on September 13, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-28986/</id>
    <title>CVE-2024-28986 — SolarWinds Web Help Desk</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-28986/"/>
    <updated>2024-08-15T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SolarWinds; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 15, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-4879/</id>
    <title>CVE-2024-4879 — ServiceNow Now Platform</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-4879/"/>
    <updated>2024-07-29T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ServiceNow; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 29, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-5217/</id>
    <title>CVE-2024-5217 — ServiceNow Now Platform</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-5217/"/>
    <updated>2024-07-29T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ServiceNow; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 29, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-44529/</id>
    <title>CVE-2021-44529 — Ivanti Cloud Services Appliance (CSA)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-44529/"/>
    <updated>2024-03-25T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-48788/</id>
    <title>CVE-2023-48788 — Fortinet FortiClient EMS</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-48788/"/>
    <updated>2024-03-25T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Fortinet; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-35082/</id>
    <title>CVE-2023-35082 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-35082/"/>
    <updated>2024-01-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on January 18, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-47246/</id>
    <title>CVE-2023-47246 — SysAid On-Prem</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-47246/"/>
    <updated>2023-11-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from SysAid; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on November 13, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-38035/</id>
    <title>CVE-2023-38035 — Ivanti Sentry</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-38035/"/>
    <updated>2023-08-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 22, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-35081/</id>
    <title>CVE-2023-35081 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-35081/"/>
    <updated>2023-07-31T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 31, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-35078/</id>
    <title>CVE-2023-35078 — Ivanti Endpoint Manager Mobile (EPMM, ex-MobileIron)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-35078/"/>
    <updated>2023-07-25T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ivanti; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on July 25, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-20887/</id>
    <title>CVE-2023-20887 — VMware (Broadcom) Aria Operations for Networks (ex-vRealize Network Insight)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-20887/"/>
    <updated>2023-06-22T00:00:00Z</updated>
    <summary type="text">Apply the security update from VMware (Broadcom). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on June 22, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-35914/</id>
    <title>CVE-2022-35914 — Teclib GLPI</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-35914/"/>
    <updated>2023-03-07T00:00:00Z</updated>
    <summary type="text">Apply the security update from Teclib. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 7, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-46169/</id>
    <title>CVE-2022-46169 — Cacti</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-46169/"/>
    <updated>2023-02-16T00:00:00Z</updated>
    <summary type="text">Apply the security update from Cacti. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 16, 2023.</summary>
  </entry>
</feed>
