INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 46m Global phishing Multiple sectors HIGH 1h Global insider Cybersecurity Services CRITICAL 1h Global ransomware Multiple sectors (U.S. companies) CRITICAL 2h Global malware Financial Services, Cryptocurrency CRITICAL 2h Global malware Technology and Cloud Services HIGH 2h Global general Financial Services and E-commerce MEDIUM 2h Global data_breach Social Media and Communications CRITICAL 2h Global general Cybersecurity Operations HIGH 3h Global phishing Technology and Consumer Services HIGH 3h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 46m Global phishing Multiple sectors HIGH 1h Global insider Cybersecurity Services CRITICAL 1h Global ransomware Multiple sectors (U.S. companies) CRITICAL 2h Global malware Financial Services, Cryptocurrency CRITICAL 2h Global malware Technology and Cloud Services HIGH 2h Global general Financial Services and E-commerce MEDIUM 2h Global data_breach Social Media and Communications CRITICAL 2h Global general Cybersecurity Operations HIGH 3h Global phishing Technology and Consumer Services HIGH 3h Global vulnerability Industrial Control Systems / IoT / Infrastructure CRITICAL 46m Global phishing Multiple sectors HIGH 1h Global insider Cybersecurity Services CRITICAL 1h Global ransomware Multiple sectors (U.S. companies) CRITICAL 2h Global malware Financial Services, Cryptocurrency CRITICAL 2h Global malware Technology and Cloud Services HIGH 2h Global general Financial Services and E-commerce MEDIUM 2h Global data_breach Social Media and Communications CRITICAL 2h Global general Cybersecurity Operations HIGH 3h Global phishing Technology and Consumer Services HIGH 3h

🛡️ CVE Vulnerability Database

CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia

CVE ID Title / Description Severity CVSS Status Published
CVE-2025-20337
Cisco Identity Services Engine API Injection Vulnerability - Remo…
Cisco Identity Services Engine Injection Vulnerability — Cisco Identity Services Engine contains an …
CRITICAL
9.0
KEV AI Jul 28, 2025
CVE-2025-20281
Cisco Identity Services Engine API Injection Vulnerability - Remo…
Cisco Identity Services Engine Injection Vulnerability — Cisco Identity Services Engine contains an …
CRITICAL
9.0
KEV AI Jul 28, 2025
CVE-2025-53770
Microsoft SharePoint Deserialization of Untrusted Data Remote Cod…
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability — Microsoft SharePoint Server o…
CRITICAL
9.0
KEV AI Jul 20, 2025
CVE-2025-33053
Microsoft Windows WebDAV Remote Code Execution via Internet Short…
Microsoft Windows External Control of File Name or Path Vulnerability — Microsoft Windows contains …
CRITICAL
9.0
KEV AI Jun 10, 2025
CVE-2025-24016
Wazuh Server Remote Code Execution via Unsafe Deserialization
Wazuh Server Deserialization of Untrusted Data Vulnerability — Wazuh contains a deserialization of u…
CRITICAL
9.0
KEV AI Jun 10, 2025
CVE-2025-32433
Erlang/OTP SSH Server Missing Authentication for Critical Functio…
Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability — Erlang Erl…
CRITICAL
9.0
KEV AI Jun 9, 2025
CVE-2025-3935
ConnectWise ScreenConnect Improper Authentication and ViewState C…
ConnectWise ScreenConnect Improper Authentication Vulnerability — ConnectWise ScreenConnect contains…
CRITICAL
9.0
KEV AI Jun 2, 2025
CVE-2024-56145
Craft CMS Code Injection Vulnerability — Craft CMS contains a cod…
Craft CMS Code Injection Vulnerability — Craft CMS contains a code injection vulnerability. Users wi…
CRITICAL
9.0
KEV AI Jun 2, 2025
CVE-2025-32756
Fortinet Multiple Products Stack-Based Buffer Overflow - Remote C…
Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability — Fortinet FortiFone, FortiVoic…
CRITICAL
9.0
KEV AI May 14, 2025
CVE-2025-30397
Microsoft Windows Scripting Engine Type Confusion Remote Code Exe…
Microsoft Windows Scripting Engine Type Confusion Vulnerability — Microsoft Windows Scripting Engine…
CRITICAL
9.0
KEV AI May 13, 2025
CVE-2025-34028
Commvault Command Center Remote Code Execution via Path Traversal
Commvault Command Center Path Traversal Vulnerability — Commvault Command Center contains a path tra…
CRITICAL
9.0
KEV AI May 2, 2025
CVE-2025-42599
Qualitia Active! Mail Stack-Based Buffer Overflow Remote Code Exe…
Qualitia Active! Mail Stack-Based Buffer Overflow Vulnerability — Qualitia Active! Mail contains a s…
CRITICAL
9.0
KEV AI Apr 28, 2025
CVE-2025-3928
Commvault Web Server Remote Code Execution via Webshell Execution
Commvault Web Server Unspecified Vulnerability — Commvault Web Server contains an unspecified vulner…
CRITICAL
9.0
KEV AI Apr 28, 2025
CVE-2025-30406
Gladinet CentreStack Hard-coded Cryptographic Key Vulnerability -…
Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability — Gladinet Centre…
CRITICAL
9.0
KEV AI Apr 8, 2025
CVE-2025-22457
Ivanti Connect Secure Stack-Based Buffer Overflow Remote Code Exe…
Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability — I…
CRITICAL
9.0
KEV AI Apr 4, 2025
CVE-2025-24813
Apache Tomcat Path Equivalence Vulnerability - Remote Code Execut…
Apache Tomcat Path Equivalence Vulnerability — Apache Tomcat contains a path equivalence vulnerabili…
CRITICAL
9.0
KEV AI Apr 1, 2025
CVE-2025-1316
Edimax IC-7100 IP Camera OS Command Injection Remote Code Executi…
Edimax IC-7100 IP Camera OS Command Injection Vulnerability — Edimax IC-7100 IP camera contains an O…
CRITICAL
9.0
KEV AI Mar 19, 2025
CVE-2025-24985
Microsoft Windows Fast FAT File System Driver Integer Overflow Re…
Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability — Microsoft Windows Fas…
CRITICAL
9.0
KEV AI Mar 11, 2025
CVE-2024-4885
Progress WhatsUp Gold Path Traversal Vulnerability — Progress Wha…
Progress WhatsUp Gold Path Traversal Vulnerability — Progress WhatsUp Gold contains a path traversal…
CRITICAL
9.0
KEV AI Mar 3, 2025
CVE-2025-23209
Craft CMS Code Injection Vulnerability Enabling Remote Code Execu…
Craft CMS Code Injection Vulnerability — Craft CMS contains a code injection vulnerability caused by…
CRITICAL
9.0
KEV AI Feb 20, 2025
CVE-2025-0994
Trimble Cityworks Deserialization Remote Code Execution Vulnerabi…
Trimble Cityworks Deserialization Vulnerability — Trimble Cityworks contains a deserialization vulne…
CRITICAL
9.0
KEV AI Feb 7, 2025
CVE-2024-21413
Microsoft Outlook Improper Input Validation Vulnerability — Micro…
Microsoft Outlook Improper Input Validation Vulnerability — Microsoft Outlook contains an improper i…
CRITICAL
9.0
KEV AI Feb 6, 2025
CVE-2020-15069
Sophos XG Firewall Buffer Overflow Vulnerability — Sophos XG Fire…
Sophos XG Firewall Buffer Overflow Vulnerability — Sophos XG Firewall contains a buffer overflow vul…
CRITICAL
9.0
KEV AI Feb 6, 2025
CVE-2024-29059
Microsoft .NET Framework Information Disclosure Vulnerability — M…
Microsoft .NET Framework Information Disclosure Vulnerability — Microsoft .NET Framework contains an…
CRITICAL
9.0
KEV AI Feb 4, 2025
CVE-2025-23006
SonicWall SMA1000 Deserialization Remote Code Execution Vulnerabi…
SonicWall SMA1000 Appliances Deserialization Vulnerability — SonicWall SMA1000 Appliance Management …
CRITICAL
9.0
KEV AI Jan 24, 2025
🤖 AI Analysis Active
AI analysis includes: Arabic description, Saudi impact assessment, remediation steps, compliance mapping (NCA ECC, SAMA CSF, ISO 27001) and MITRE ATT&CK techniques.
💡 Search Tips
CVE-2024-12345 Search by exact ID
apache Search by product name
remote code execution Search by vulnerability type
log4j Search by common name
📡 Data Sources
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
Auto-updated daily via cron
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.