Skip to content

RCE

Understanding CVE-2025-34028, Commvault’s Critical Pre-Auth RCE Vulnerability

In April 2025, a critical pre-auth Remote Code Execution vulnerability, CVE-2025-34028, was discovered in Commvault Command Center. This vulnerability allows attackers to achieve remote code execution without authentication by exploiting an Server-Side Request forgery (SSRF) and a path traversal issue that enables uploading and executing malicious ZIP files. With a CVSS score of 10.0, this… Read More »Understanding CVE-2025-34028, Commvault’s Critical Pre-Auth RCE Vulnerability

Critical CVEs And Active Threats: Apache Kafka-Ui, Ivanti Multiple Product, J-Web of Juniper Networks Junos OS and More

Critical CVEs And Active Threats: Apache Kafka-Ui, Ivanti Multiple Product, J-Web of Juniper Networks Junos OS and More This week from January 29th to February 02nd, FireCompass research team identified a huge number of CVEs that are high in severity and ransomware, botnets, and threat actors creating havoc. Some of the CVEs identified are popular… Read More »Critical CVEs And Active Threats: Apache Kafka-Ui, Ivanti Multiple Product, J-Web of Juniper Networks Junos OS and More

Critical CVEs And Active Threats: Apache Tomcat, GoAnywhere MFT, PAS and More

Critical CVEs And Active Threats: Apache Tomcat, GoAnywhere MFT, PAS and More This week from January 22 to  25, the FireCompass research team identified a huge number of CVEs that are high in severity and ransomware, botnets, and threat actors creating havoc. Some of the CVEs identified are popular commercial products used by variants of… Read More »Critical CVEs And Active Threats: Apache Tomcat, GoAnywhere MFT, PAS and More

Critical CVEs And Active Threats: Apache Solr, Traccar, Kodbox and More

Critical CVEs And Active Threats: Apache Solr, Traccar, Kodbox and More This week from January 15 to January 19, FireCompass research team identified a huge number of CVEs that are high in severity and ransomware, botnets, and threat actors creating havoc. Some of the CVEs identified are of popular commercial products used by variants of… Read More »Critical CVEs And Active Threats: Apache Solr, Traccar, Kodbox and More

Critical CVEs And Active Threats: IBM Aspera Console, Barracuda Networks Inc and More

During the week of  December 25 to 29, FireCompass research team identified a huge number of CVEs that are high in severity and ransomware, botnets, and threat actors creating havoc. Some of the CVEs identified are of popular commercial products used by variants of industries and somenew & well known malwares targeting industries for this… Read More »Critical CVEs And Active Threats: IBM Aspera Console, Barracuda Networks Inc and More