INITIALIZING
📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global vulnerability Enterprise Software and Database Management CRITICAL 53m Global vulnerability Information Technology CRITICAL 1h Global malware Financial Services HIGH 1h Global vulnerability Technology/Software CRITICAL 2h Global vulnerability Information Technology HIGH 2h Global data_breach Government CRITICAL 11h Global ransomware Financial Services / Cybersecurity CRITICAL 12h Global vulnerability Information Technology / Cybersecurity CRITICAL 14h Global malware Energy and Utilities CRITICAL 14h Global ransomware Multiple sectors CRITICAL 15h Global vulnerability Enterprise Software and Database Management CRITICAL 53m Global vulnerability Information Technology CRITICAL 1h Global malware Financial Services HIGH 1h Global vulnerability Technology/Software CRITICAL 2h Global vulnerability Information Technology HIGH 2h Global data_breach Government CRITICAL 11h Global ransomware Financial Services / Cybersecurity CRITICAL 12h Global vulnerability Information Technology / Cybersecurity CRITICAL 14h Global malware Energy and Utilities CRITICAL 14h Global ransomware Multiple sectors CRITICAL 15h Global vulnerability Enterprise Software and Database Management CRITICAL 53m Global vulnerability Information Technology CRITICAL 1h Global malware Financial Services HIGH 1h Global vulnerability Technology/Software CRITICAL 2h Global vulnerability Information Technology HIGH 2h Global data_breach Government CRITICAL 11h Global ransomware Financial Services / Cybersecurity CRITICAL 12h Global vulnerability Information Technology / Cybersecurity CRITICAL 14h Global malware Energy and Utilities CRITICAL 14h Global ransomware Multiple sectors CRITICAL 15h

🛡️ CVE Vulnerability Database

CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia

CVE ID Title / Description Severity CVSS Status Published
CVE-2020-37032
Wing FTP Server 6.3.8 contains a remote code execution vulnerabil…
Wing FTP Server 6.3.8 contains a remote code execution vulnerability in its Lua-based web console th…
HIGH
8.8
AI Jan 30, 2026
CVE-2020-37033
Infor Storefront B2B 1.0 contains a SQL injection vulnerability t…
Infor Storefront B2B 1.0 contains a SQL injection vulnerability that allows attackers to manipulate …
HIGH
8.2
Jan 30, 2026
CVE-2020-37034
HelloWeb 2.0 contains an arbitrary file download vulnerability th…
HelloWeb 2.0 contains an arbitrary file download vulnerability that allows remote attackers to downl…
HIGH
7.5
Jan 30, 2026
CVE-2020-37035
e-Learning PHP Script 0.1.0 contains a SQL injection vulnerabilit…
e-Learning PHP Script 0.1.0 contains a SQL injection vulnerability in the search functionality that …
HIGH
8.2
Jan 30, 2026
CVE-2020-37036
RM Downloader 2.50.60 contains a local buffer overflow vulnerabil…
RM Downloader 2.50.60 contains a local buffer overflow vulnerability in the 'Load' parameter that al…
HIGH
8.4
Jan 30, 2026
CVE-2020-37038
Code Blocks 20.03 contains a denial of service vulnerability that…
Code Blocks 20.03 contains a denial of service vulnerability that allows attackers to crash the appl…
HIGH
7.5
Jan 30, 2026
CVE-2020-37039
Frigate 2.02 contains a denial of service vulnerability that allo…
Frigate 2.02 contains a denial of service vulnerability that allows attackers to crash the applicati…
HIGH
7.5
Jan 30, 2026
CVE-2020-37040
Code Blocks 17.12 contains a local buffer overflow vulnerability …
Code Blocks 17.12 contains a local buffer overflow vulnerability that allows attackers to execute ar…
HIGH
8.4
Jan 30, 2026
CVE-2020-37041
OpenCTI 3.3.1 is vulnerable to a directory traversal attack via t…
OpenCTI 3.3.1 is vulnerable to a directory traversal attack via the static/css endpoint. An unauthen…
HIGH
7.5
Jan 30, 2026
CVE-2020-37042
Frigate Professional 3.36.0.9 contains a local buffer overflow vu…
Frigate Professional 3.36.0.9 contains a local buffer overflow vulnerability in the 'Find Computer' …
HIGH
8.4
Jan 30, 2026
CVE-2020-37049
Frigate 3.36.0.9 contains a local buffer overflow vulnerability i…
Frigate 3.36.0.9 contains a local buffer overflow vulnerability in the Command Line input field that…
HIGH
8.4
Jan 30, 2026
CVE-2020-37051
Online-Exam-System 2015 contains a time-based blind SQL injection…
Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback form…
HIGH
8.2
Jan 30, 2026
CVE-2020-37057
Online-Exam-System 2015 contains a SQL injection vulnerability in…
Online-Exam-System 2015 contains a SQL injection vulnerability in the feedback module that allows at…
HIGH
8.2
Jan 30, 2026
CVE-2020-37058
Andrea ST Filters Service 1.0.64.7 contains an unquoted service p…
Andrea ST Filters Service 1.0.64.7 contains an unquoted service path vulnerability in its Windows se…
HIGH
7.8
Jan 30, 2026
CVE-2020-37059
Popcorn Time 6.2.1.14 contains an unquoted service path vulnerabi…
Popcorn Time 6.2.1.14 contains an unquoted service path vulnerability that allows local non-privileg…
HIGH
7.8
Jan 30, 2026
CVE-2020-37060
Atomic Alarm Clock 6.3 contains a local privilege escalation vuln…
Atomic Alarm Clock 6.3 contains a local privilege escalation vulnerability in its service configurat…
HIGH
7.8
Jan 30, 2026
CVE-2026-25153
Backstage is an open framework for building developer portals, an…
Backstage is an open framework for building developer portals, and @backstage/plugin-techdocs-node p…
HIGH
7.7
Jan 30, 2026
CVE-2026-1610
A vulnerability was found in Tenda AX12 Pro V2 16.03.49.24_cn. Af…
A vulnerability was found in Tenda AX12 Pro V2 16.03.49.24_cn. Affected by this issue is some unknow…
HIGH
8.1
Jan 29, 2026
CVE-2026-24780
AutoGPT is a platform that allows users to create, deploy, and ma…
AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intellig…
HIGH
8.8
Jan 29, 2026
CVE-2026-25047
deepHas provides a test for the existence of a nested object key …
deepHas provides a test for the existence of a nested object key and optionally returns that key. A …
HIGH
8.8
Jan 29, 2026
CVE-2026-25061
tcpflow is a TCP/IP packet demultiplexer. In versions up to and i…
tcpflow is a TCP/IP packet demultiplexer. In versions up to and including 1.61, wifipcap parses 802.…
HIGH
7.5
Jan 29, 2026
CVE-2026-25116
Runtipi is a personal homeserver orchestrator. Starting in versio…
Runtipi is a personal homeserver orchestrator. Starting in version 4.5.0 and prior to version 4.7.2,…
HIGH
7.6
Jan 29, 2026
CVE-2025-7016
Improper Access Control vulnerability in Akın Software Computer I…
Improper Access Control vulnerability in Akın Software Computer Import Export Industry and Trade Ltd…
HIGH
8.0
Jan 29, 2026
CVE-2025-7713
Improper Neutralization of Input During Web Page Generation (XSS …
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerab…
HIGH
7.5
Jan 29, 2026
CVE-2025-7714
Improper Neutralization of Special Elements used in an SQL Comman…
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i…
HIGH
7.5
Jan 29, 2026
🤖 AI Analysis Active
AI analysis includes: Arabic description, Saudi impact assessment, remediation steps, compliance mapping (NCA ECC, SAMA CSF, ISO 27001) and MITRE ATT&CK techniques.
💡 Search Tips
CVE-2024-12345 Search by exact ID
apache Search by product name
remote code execution Search by vulnerability type
log4j Search by common name
📡 Data Sources
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
Auto-updated daily via cron
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.