INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global ransomware Information Technology, Virtualization Infrastructure CRITICAL 55m Global supply_chain Software Development and DevOps CRITICAL 1h Global supply_chain Software Development and Technology CRITICAL 2h Global apt Multiple sectors HIGH 4h Global general Digital Content & Intellectual Property MEDIUM 4h Global malware Technology and Software Development CRITICAL 4h Global ddos Technology and Social Media HIGH 5h Global phishing Financial Services, Telecommunications, General Public HIGH 5h Global supply_chain Software Development and Technology CRITICAL 6h Global apt Multiple sectors / Critical Infrastructure CRITICAL 6h Global ransomware Information Technology, Virtualization Infrastructure CRITICAL 55m Global supply_chain Software Development and DevOps CRITICAL 1h Global supply_chain Software Development and Technology CRITICAL 2h Global apt Multiple sectors HIGH 4h Global general Digital Content & Intellectual Property MEDIUM 4h Global malware Technology and Software Development CRITICAL 4h Global ddos Technology and Social Media HIGH 5h Global phishing Financial Services, Telecommunications, General Public HIGH 5h Global supply_chain Software Development and Technology CRITICAL 6h Global apt Multiple sectors / Critical Infrastructure CRITICAL 6h Global ransomware Information Technology, Virtualization Infrastructure CRITICAL 55m Global supply_chain Software Development and DevOps CRITICAL 1h Global supply_chain Software Development and Technology CRITICAL 2h Global apt Multiple sectors HIGH 4h Global general Digital Content & Intellectual Property MEDIUM 4h Global malware Technology and Software Development CRITICAL 4h Global ddos Technology and Social Media HIGH 5h Global phishing Financial Services, Telecommunications, General Public HIGH 5h Global supply_chain Software Development and Technology CRITICAL 6h Global apt Multiple sectors / Critical Infrastructure CRITICAL 6h

🛡️ CVE Intelligence Center

Common Vulnerabilities & Exposures — Security Intelligence Database

CVE ID Severity CVSS Description Status Published
CVE-2018-8639 Critical 9.0
Microsoft Windows Win32k Improper Resource Shutdown or Release Vulnerability — Microsoft Windows Win32k contains an impr…
⚡ Exploit ✅ Patch Mar 3, 2025
CVE-2022-43769 Critical 9.0
Hitachi Vantara Pentaho BA Server Special Element Injection Vulnerability — Hitachi Vantara Pentaho BA Server contains a…
⚡ Exploit ✅ Patch Mar 3, 2025
CVE-2023-20118 Critical 9.0
Cisco Small Business RV Series Routers Command Injection Vulnerability — Multiple Cisco Small Business RV Series Routers…
⚡ Exploit ✅ Patch Mar 3, 2025
CVE-2022-43939 Critical 9.0
Hitachi Vantara Pentaho BA Server Authorization Bypass Vulnerability — Hitachi Vantara Pentaho BA Server contains a use …
⚡ Exploit ✅ Patch Mar 3, 2025
CVE-2024-49035 Critical 9.0
Microsoft Partner Center Improper Access Control Vulnerability — Microsoft Partner Center contains an improper access co…
⚡ Exploit ✅ Patch Feb 25, 2025
CVE-2023-34192 Critical 9.0
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability — Synacor Zimbra Collaboration Suite (…
⚡ Exploit ✅ Patch Feb 25, 2025
CVE-2024-20953 Critical 9.0
Oracle Agile Product Lifecycle Management (PLM) Deserialization Vulnerability — Oracle Agile Product Lifecycle Managemen…
⚡ Exploit ✅ Patch Feb 24, 2025
CVE-2017-3066 Critical 9.0
Adobe ColdFusion Deserialization Vulnerability — Adobe ColdFusion contains a deserialization vulnerability in the Apache…
⚡ Exploit ✅ Patch Feb 24, 2025
CVE-2025-24989 Critical 9.0
Microsoft Power Pages Improper Access Control Vulnerability — Microsoft Power Pages contains an improper access control …
⚡ Exploit ✅ Patch Feb 21, 2025
CVE-2025-23209 Critical 9.0
Craft CMS Code Injection Vulnerability — Craft CMS contains a code injection vulnerability caused by improper validation…
⚡ Exploit ✅ Patch Feb 20, 2025
CVE-2025-0111 Critical 9.0
Palo Alto Networks PAN-OS File Read Vulnerability — Palo Alto Networks PAN-OS contains an external control of file name …
⚡ Exploit ✅ Patch Feb 20, 2025
CVE-2024-53704 Critical 9.0
SonicWall SonicOS SSLVPN Improper Authentication Vulnerability — SonicWall SonicOS contains an improper authentication v…
⚡ Exploit ✅ Patch Feb 18, 2025
CVE-2025-0108 Critical 9.0
Palo Alto Networks PAN-OS Authentication Bypass Vulnerability — Palo Alto Networks PAN-OS contains an authentication byp…
⚡ Exploit ✅ Patch Feb 18, 2025
CVE-2024-57727 Critical 9.0
SimpleHelp Path Traversal Vulnerability — SimpleHelp remote support software contains multiple path traversal vulnerabil…
⚡ Exploit ✅ Patch Feb 13, 2025
CVE-2025-24200 Critical 9.0
Apple iOS and iPadOS Incorrect Authorization Vulnerability — Apple iOS and iPadOS contains an incorrect authorization vu…
⚡ Exploit ✅ Patch Feb 12, 2025
CVE-2024-41710 Critical 9.0
Mitel SIP Phones Argument Injection Vulnerability — Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, includi…
⚡ Exploit ✅ Patch Feb 12, 2025
CVE-2025-21418 Critical 9.0
Microsoft Windows Ancillary Function Driver for WinSock Heap-Based Buffer Overflow Vulnerability — Microsoft Windows Anc…
⚡ Exploit ✅ Patch Feb 11, 2025
CVE-2025-21391 Critical 9.0
Microsoft Windows Storage Link Following Vulnerability — Microsoft Windows Storage contains a link following vulnerabili…
⚡ Exploit ✅ Patch Feb 11, 2025
CVE-2024-40890 Critical 9.0
Zyxel DSL CPE OS Command Injection Vulnerability — Multiple Zyxel DSL CPE devices contain a post-authentication command …
⚡ Exploit ✅ Patch Feb 11, 2025
CVE-2024-40891 Critical 9.0
Zyxel DSL CPE OS Command Injection Vulnerability — Multiple Zyxel DSL CPE devices contain a post-authentication command …
⚡ Exploit ✅ Patch Feb 11, 2025
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.