Log sources › WinEventLog:Sysmon
WinEventLog:Sysmon
Inverted view: what can be detected if this is the log you have. IaaS, Linux, Office Suite, Windows, macOS
24
channels
435
analytics
423
techniques
418
KEV CVEs reachable
"Reachable" means: a KEV CVE has a public mapping to a technique, and MITRE's analytic for that technique names this log source. It is a statement about published knowledge, not about whether any particular rule fires.
Channels
Techniques detectable from this source
KEV CVEs reachable from this source
| CVE | Vendor / product | Via technique | State |
|---|---|---|---|
| CVE-2007-5659 | Adobe Acrobat and Reader | T1204.002 | Mapped |
| CVE-2008-0655 | Adobe Acrobat and Reader | T1204.002 | Mapped |
| CVE-2008-2992 | Adobe Acrobat and Reader | T1204.002 | Mapped |
| CVE-2009-1862 | Adobe Acrobat and Reader, Flash Player | T1204.002 | Mapped |
| CVE-2009-3953 | Adobe Acrobat and Reader | T1204.002 | Mapped |
| CVE-2009-3960 | Adobe BlazeDS | T1190 T1486 | Mapped |
| CVE-2009-4324 | Adobe Acrobat and Reader | T1071.001 T1204.002 | Mapped |
| CVE-2010-0188 | Adobe Reader and Acrobat | T1105 T1189 | Mapped |
| CVE-2010-1297 | Adobe Flash Player | T1105 T1189 T1204.002 | Mapped |
| CVE-2010-2861 | Adobe ColdFusion | T1105 T1119 T1190 | Mapped |
| CVE-2010-2883 | Adobe Acrobat and Reader | T1027 T1059 T1204.002 | Mapped |
| CVE-2011-0611 | Adobe Flash Player | T1105 T1204.002 | Mapped |
| CVE-2011-2462 | Adobe Reader and Acrobat | T1204.002 | Mapped |
| CVE-2012-0754 | Adobe Flash Player | T1105 T1204.002 | Mapped |
| CVE-2012-0767 | Adobe Flash Player | T1098 T1114.002 T1185 T1204.001 | Mapped |
| CVE-2012-1535 | Adobe Flash Player | T1105 T1204.002 | Mapped |
| CVE-2012-2034 | Adobe Flash Player | T1189 | Mapped |
| CVE-2012-5054 | Adobe Flash Player | T1189 | Mapped |
| CVE-2013-0625 | Adobe ColdFusion | T1190 | Mapped |
| CVE-2013-0629 | Adobe ColdFusion | T1005 T1190 T1202 | Mapped |
| CVE-2013-0631 | Adobe ColdFusion | T1190 | Mapped |
| CVE-2013-0632 | Adobe ColdFusion | T1190 | Mapped |
| CVE-2013-0640 | Adobe Reader and Acrobat | T1566.001 | Mapped |
| CVE-2013-0641 | Adobe Reader | T1048 T1105 T1204.002 | Mapped |
| CVE-2013-3346 | Adobe Reader and Acrobat | T1059.007 | Mapped |
| CVE-2014-0496 | Adobe Reader and Acrobat | T1204.002 | Mapped |
| CVE-2014-0546 | Adobe Reader and Acrobat | T1068 T1497 | Mapped |
| CVE-2014-6271 | GNU Bourne-Again Shell (Bash) | T1133 T1190 | Mapped |
| CVE-2014-7169 | GNU Bourne-Again Shell (Bash) | T1133 T1190 | Mapped |
| CVE-2014-8439 | Adobe Flash Player | T1189 | Mapped |
| CVE-2015-0310 | Adobe Flash Player | T1189 | Mapped |
| CVE-2015-0313 | Adobe Flash Player | T1189 | Mapped |
| CVE-2015-3043 | Adobe Flash Player | T1189 T1204.002 T1499.004 | Mapped |
| CVE-2015-3113 | Adobe Flash Player | T1071.001 T1204.002 T1497 T1622 | Mapped |
| CVE-2015-5119 | Adobe Flash Player | T1055.001 T1059.007 T1071.001 T1105 T1203 T1204.001 T1566.002 | Mapped |
| CVE-2015-7645 | Adobe Flash Player | T1204.002 | Mapped |
| CVE-2015-8651 | Adobe Flash Player | T1105 T1189 T1486 | Mapped |
| CVE-2016-0984 | Adobe Flash Player and AIR | T1105 T1204.002 | Mapped |
| CVE-2016-10033 | PHP PHPMailer | T1190 | Mapped |
| CVE-2016-1010 | Adobe Flash Player and AIR | T1574 | Mapped |
| CVE-2016-1019 | Adobe Flash Player | T1105 T1189 T1486 | Mapped |
| CVE-2016-4117 | Adobe Flash Player | T1105 T1204.002 | Mapped |
| CVE-2016-4437 | Apache Shiro | T1059 T1190 | Mapped |
| CVE-2016-7855 | Adobe Flash Player | T1189 | Mapped |
| CVE-2017-11292 | Adobe Flash Player | T1005 T1105 T1204.002 T1566.001 | Mapped |
| CVE-2017-11882 | Microsoft Office | T1059 T1566.001 | Mapped |
| CVE-2017-12637 | SAP NetWeaver | T1083 T1190 T1555 | Mapped |
| CVE-2017-5638 | Apache Struts | T1005 T1059 T1190 | Mapped |
| CVE-2017-6742 | Cisco IOS and IOS XE Software | T1048 T1059 T1574 | Mapped |
| CVE-2017-9805 | Apache Struts | T1059 T1190 | Mapped |
| CVE-2017-9822 | DotNetNuke (DNN) DotNetNuke (DNN) | T1059 T1190 T1496 | Mapped |
| CVE-2018-0296 | Cisco Adaptive Security Appliance (ASA) | T1005 T1202 | Mapped |
| CVE-2018-11776 | Apache Struts | T1059 T1190 T1496 | Mapped |
| CVE-2018-13379 | Fortinet FortiOS | T1190 | Mapped |
| CVE-2018-15961 | Adobe ColdFusion | T1190 T1491.002 | Mapped |
| CVE-2018-15982 | Adobe Flash Player | T1105 T1204.002 | Mapped |
| CVE-2018-4878 | Adobe Flash Player | T1041 T1204.002 T1219 | Mapped |
| CVE-2018-4939 | Adobe ColdFusion | T1133 T1190 T1203 | Mapped |
| CVE-2018-4990 | Adobe Acrobat and Reader | T1059.007 T1204.002 | Mapped |
| CVE-2018-6789 | Exim Exim | T1059 T1190 | Mapped |
| CVE-2018-7600 | Drupal Drupal Core | T1059 T1190 T1485 T1496 | Mapped |
| CVE-2019-0211 | Apache HTTP Server | T1068 | Mapped |
| CVE-2019-0604 | Microsoft SharePoint | T1003 T1041 T1190 T1505.003 | Mapped |
| CVE-2019-0708 | Microsoft Remote Desktop Services | T1133 T1498 | Mapped |
| CVE-2019-11510 | Ivanti Pulse Connect Secure | T1059 T1083 T1133 T1552.001 | Mapped |
| CVE-2019-11580 | Atlassian Crowd and Crowd Data Center | T1059 | Mapped |
| CVE-2019-11634 | Citrix Workspace Application and Receiver for Windows | T1003 T1005 T1046 T1059 T1078 T1190 T1486 | Mapped |
| CVE-2019-13608 | Citrix StoreFront Server | T1003 T1005 T1046 T1059 T1078 | Mapped |
| CVE-2019-1653 | Cisco Small Business RV320 and RV325 Routers | T1005 T1082 T1190 | Mapped |
| CVE-2019-17558 | Apache Solr | T1059 T1190 | Mapped |
| CVE-2019-18935 | Progress Telerik UI for ASP.NET AJAX | T1041 T1190 T1496 T1505.003 | Mapped |
| CVE-2019-19781 | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | T1059 T1083 T1133 | Mapped |
| CVE-2019-3396 | Atlassian Confluence Server and Data Server | T1090 T1133 T1202 | Mapped |
| CVE-2019-3398 | Atlassian Confluence Server and Data Center | T1059 T1202 | Mapped |
| CVE-2019-5591 | Fortinet FortiOS | T1005 T1133 T1557 | Mapped |
| CVE-2020-0069 | MediaTek Multiple Chipsets | T1068 | Mapped |
| CVE-2020-0688 | Microsoft Exchange Server | T1114 T1190 T1505.003 | Mapped |
| CVE-2020-0787 | Microsoft Windows | T1059 T1068 | Mapped |
| CVE-2020-12812 | Fortinet FortiOS | T1556 | Mapped |
| CVE-2020-1472 | Microsoft Netlogon | T1021 T1068 T1087.002 T1133 T1486 | Mapped |
| CVE-2020-15505 | Ivanti MobileIron Multiple Products | T1059 T1190 | Mapped |
| CVE-2020-17530 | Apache Struts | T1059 T1190 | Mapped |
| CVE-2020-25506 | D-Link DNS-320 Device | T1059 T1133 | Mapped |
| CVE-2020-29557 | D-Link DIR-825 R1 Devices | T1059 T1190 | Mapped |
| CVE-2020-29574 | Sophos CyberoamOS | T1055 T1059 | Mapped |
| CVE-2020-3452 | Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | T1005 T1202 | Mapped |
| CVE-2020-3580 | Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | T1059 T1204.001 T1217 | Mapped |
| CVE-2020-5735 | Amcrest Cameras and Network Video Recorder (NVR) | T1499 T1574 | Mapped |
| CVE-2020-5902 | F5 BIG-IP | T1003 T1005 T1059 T1070.004 T1133 T1190 T1552 | Stale |
| CVE-2020-8193 | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | T1005 T1556 | Mapped |
| CVE-2020-8195 | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | T1005 T1056 T1082 | Mapped |
| CVE-2020-8196 | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | T1005 T1056 T1082 | Mapped |
| CVE-2020-8515 | DrayTek Multiple Vigor Routers | T1059 T1133 T1496 | Mapped |
| CVE-2020-8657 | EyesOfNetwork EyesOfNetwork | T1106 | Mapped |
| CVE-2021-1497 | Cisco HyperFlex HX | T1059 T1133 | Mapped |
| CVE-2021-1498 | Cisco HyperFlex HX | T1059 T1133 | Mapped |
| CVE-2021-20035 | SonicWall SMA100 Appliances | T1059 T1078 | Mapped |
| CVE-2021-21017 | Adobe Acrobat and Reader | T1204.002 | Mapped |
| CVE-2021-21148 | Google Chromium V8 | T1059.007 T1203 | Mapped |
| CVE-2021-21166 | Google Chromium | T1059.007 T1203 | Mapped |
| CVE-2021-21206 | Google Chromium Blink | T1059.007 T1203 | Mapped |
| CVE-2021-21972 | VMware vCenter Server | T1059 T1190 | Mapped |
| CVE-2021-21973 | VMware vCenter Server and Cloud Foundation | T1046 T1190 | Mapped |
| CVE-2021-21975 | VMware vRealize Operations Manager API | T1190 | Mapped |
| CVE-2021-22005 | VMware vCenter Server | T1059 T1190 | Mapped |
| CVE-2021-22017 | VMware vCenter Server | T1090.001 T1190 | Mapped |
| CVE-2021-22204 | Perl Exiftool | T1059 T1190 | Mapped |
| CVE-2021-22205 | GitLab Community and Enterprise Editions | T1059 T1190 T1496 T1498 | Mapped |
| CVE-2021-22893 | Ivanti Pulse Connect Secure | T1003 T1059 T1190 | Mapped |
| CVE-2021-22894 | Ivanti Pulse Connect Secure | T1059 T1078 | Mapped |
| CVE-2021-22899 | Ivanti Pulse Connect Secure | T1059.003 T1078 | Mapped |
| CVE-2021-22900 | Ivanti Pulse Connect Secure | T1059 T1068 | Mapped |
| CVE-2021-22986 | F5 BIG-IP and BIG-IQ Centralized Management | T1059 T1090 T1133 T1190 T1485 | Mapped |
| CVE-2021-26084 | Atlassian Confluence Server and Data Center | T1059 T1496 | Mapped |
| CVE-2021-26085 | Atlassian Confluence Server | T1005 T1190 | Mapped |
| CVE-2021-26855 | Microsoft Exchange Server | T1005 T1090 T1133 T1505.003 | Mapped |
| CVE-2021-26857 | Microsoft Exchange Server | T1133 T1505.003 | Mapped |
| CVE-2021-26858 | Microsoft Exchange Server | T1190 T1505.003 | Mapped |
| CVE-2021-27059 | Microsoft Office | T1203 | Mapped |
| CVE-2021-27065 | Microsoft Exchange Server | T1190 T1505.003 | Mapped |
| CVE-2021-27101 | Accellion FTA | T1005 T1059 | Mapped |
| CVE-2021-27102 | Accellion FTA | T1005 T1059 T1190 | Mapped |
| CVE-2021-27103 | Accellion FTA | T1005 T1190 | Mapped |
| CVE-2021-27104 | Accellion FTA | T1005 T1059 T1190 | Mapped |
| CVE-2021-27860 | FatPipe WARP, IPVPN, and MPVPN software | T1190 T1505.003 | Mapped |
| CVE-2021-28550 | Adobe Acrobat and Reader | T1204.002 | Mapped |
| CVE-2021-29256 | Arm Mali Graphics Processing Unit (GPU) | T1005 T1068 T1203 | Mapped |
| CVE-2021-30554 | Google Chromium WebGL | T1059.007 T1203 | Mapped |
| CVE-2021-31166 | Microsoft HTTP Protocol Stack | T1059 T1190 | Mapped |
| CVE-2021-31207 | Microsoft Exchange Server | T1548.002 T1565 | Mapped |
| CVE-2021-3129 | Laravel Ignition | T1059 T1190 | Mapped |
| CVE-2021-32030 | ASUS Routers | T1068 T1098 | Mapped |
| CVE-2021-33739 | Microsoft Windows | T1068 | Mapped |
| CVE-2021-34473 | Microsoft Exchange Server | T1048.003 T1053.005 T1136 T1190 T1486 | Mapped |
| CVE-2021-34523 | Microsoft Exchange Server | T1190 | Mapped |
| CVE-2021-35394 | Realtek Jungle Software Development Kit (SDK) | T1059 T1071.001 T1105 T1190 T1496 T1499 T1569.002 | Mapped |
| CVE-2021-35464 | ForgeRock Access Management (AM) | T1059 T1190 | Mapped |
| CVE-2021-36380 | Sunhillo SureLine | T1190 | Mapped |
| CVE-2021-36934 | Microsoft Windows | T1068 T1078 | Mapped |
| CVE-2021-37415 | Zoho ManageEngine ServiceDesk Plus (SDP) | T1190 | Mapped |
| CVE-2021-37975 | Google Chromium V8 | T1059.007 T1203 | Mapped |
| CVE-2021-39144 | XStream XStream | T1190 T1203 | Mapped |
| CVE-2021-39226 | Grafana Labs Grafana | T1190 T1485 | Mapped |
| CVE-2021-4034 | Red Hat Polkit | T1068 | Mapped |
| CVE-2021-40449 | Microsoft Windows | T1016 T1027 T1059.003 T1068 T1071.001 T1082 T1566 T1573.001 | Mapped |
| CVE-2021-40539 | Zoho ManageEngine | T1003 T1003.003 T1027 T1047 T1070.004 T1087.002 T1136 T1140 T1190 T1218 T1505.003 T1560.001 T1573.001 | Mapped |
| CVE-2021-40655 | D-Link DIR-605 Router | T1190 | Mapped |
| CVE-2021-41379 | Microsoft Windows | T1068 T1078 | Mapped |
| CVE-2021-41773 | Apache HTTP Server | T1059 T1210 | Mapped |
| CVE-2021-42013 | Apache HTTP Server | T1059 T1210 | Mapped |
| CVE-2021-42237 | Sitecore XP | T1059 | Mapped |
| CVE-2021-42258 | BQE BillQuick Web Suite | T1059 T1486 | Mapped |
| CVE-2021-42321 | Microsoft Exchange | T1059 T1078 | Mapped |
| CVE-2021-44077 | Zoho ManageEngine ServiceDesk Plus (SDP) / SupportCenter Plus | T1003 T1003.003 T1027 T1047 T1070.004 T1087.002 T1136 T1140 T1190 T1218 T1505.003 T1560.001 T1573.001 | Mapped |
| CVE-2021-44228 | Apache Log4j2 | T1190 T1486 T1496 T1505.003 | Mapped |
| CVE-2021-44515 | Zoho Desktop Central | T1003 T1087 T1105 T1190 | Mapped |
| CVE-2021-44529 | Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA) | T1190 T1195.002 | Mapped |
| CVE-2021-45046 | Apache Log4j2 | T1059 T1486 | Mapped |
| CVE-2021-45382 | D-Link Multiple Routers | T1059 T1070 T1071 T1190 T1499.002 T1543 | Mapped |
| CVE-2022-0028 | Palo Alto Networks PAN-OS | T1190 T1498 | Mapped |
| CVE-2022-1040 | Sophos Firewall | T1059 T1078 T1190 T1557 T1574 | Mapped |
| CVE-2022-1388 | F5 BIG-IP | T1548 | Mapped |
| CVE-2022-20699 | Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers | T1133 | Mapped |
| CVE-2022-20700 | Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers | T1190 | Mapped |
| CVE-2022-20701 | Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers | T1078 T1203 | Mapped |
| CVE-2022-20703 | Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers | T1203 | Mapped |
| CVE-2022-20708 | Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers | T1068 T1190 | Mapped |
| CVE-2022-20821 | Cisco IOS XR | T1190 | Mapped |
| CVE-2022-21919 | Microsoft Windows | T1068 T1078 | Mapped |
| CVE-2022-21971 | Microsoft Windows | T1059 T1204.001 | Mapped |
| CVE-2022-21999 | Microsoft Windows | T1059 T1068 T1078 T1136.001 T1211 | Mapped |
| CVE-2022-22047 | Microsoft Windows | T1059 T1068 T1078 T1547.001 | Mapped |
| CVE-2022-22718 | Microsoft Windows | T1068 T1078 | Mapped |
| CVE-2022-22947 | VMware Spring Cloud Gateway | T1059 T1190 T1486 | Mapped |
| CVE-2022-22948 | VMware vCenter Server | T1068 T1078 T1212 | Mapped |
| CVE-2022-22954 | VMware Workspace ONE Access and Identity Manager | T1221 T1505.003 | Mapped |
| CVE-2022-22960 | VMware Multiple Products | T1222 | Mapped |
| CVE-2022-22963 | VMware Tanzu Spring Cloud | T1059.007 T1190 T1505.003 | Mapped |
| CVE-2022-22965 | VMware Spring Framework | T1059 T1190 | Mapped |
| CVE-2022-23131 | Zabbix Frontend | T1059 T1078 T1190 T1548 | Mapped |
| CVE-2022-23748 | Audinate Dante Discovery | T1059 T1203 | Mapped |
| CVE-2022-24086 | Adobe Commerce and Magento Open Source | T1027 T1190 | Mapped |
| CVE-2022-24521 | Microsoft Windows | T1059 T1068 T1078 | Mapped |
| CVE-2022-24682 | Synacor Zimbra Collaborate Suite (ZCS) | T1059.007 T1185 T1204.001 | Mapped |
| CVE-2022-26134 | Atlassian Confluence Server/Data Center | T1190 | Mapped |
| CVE-2022-26138 | Atlassian Confluence | T1552.001 | Mapped |
| CVE-2022-26258 | D-Link DIR-820L | T1059 T1190 T1499.002 | Mapped |
| CVE-2022-26500 | Veeam Backup & Replication | T1036 T1048 T1059 T1078 T1190 | Mapped |
| CVE-2022-26501 | Veeam Backup & Replication | T1036 T1048 T1059 T1190 | Mapped |
| CVE-2022-26904 | Microsoft Windows | T1068 T1078 | Mapped |
| CVE-2022-28810 | Zoho ManageEngine | T1190 | Mapped |
| CVE-2022-29303 | SolarView Compact | T1059 T1496 T1505 | Mapped |
| CVE-2022-29464 | WSO2 Multiple Products | T1190 T1202 T1496 | Mapped |
| CVE-2022-30190 | Microsoft Windows | T1105 T1204.002 | Mapped |
| CVE-2022-3038 | Google Chromium Network Service | T1204.001 T1574 | Mapped |
| CVE-2022-3075 | Google Chromium Mojo | T1204.001 | Mapped |
| CVE-2022-34713 | Microsoft Windows | T1059 T1204.002 T1566 | Mapped |
| CVE-2022-35405 | Zoho ManageEngine | T1059 | Mapped |
| CVE-2022-35914 | Teclib GLPI | T1059 T1190 | Mapped |
| CVE-2022-36804 | Atlassian Bitbucket Server and Data Center | T1059 T1190 | Mapped |
| CVE-2022-37969 | Microsoft Windows | T1059 T1068 T1078 | Mapped |
| CVE-2022-39197 | Fortra Cobalt Strike | T1059 T1190 | Mapped |
| CVE-2022-40684 | Fortinet Multiple Products | T1190 | Mapped |
| CVE-2022-41033 | Microsoft Windows COM+ Event System Service | T1068 T1566.001 | Mapped |
| CVE-2022-41073 | Microsoft Windows | T1068 T1078 T1574 | Mapped |
| CVE-2022-41082 | Microsoft Exchange Server | T1059.001 T1078 T1087 T1482 T1505.003 T1567 | Mapped |
| CVE-2022-41125 | Microsoft Windows | T1059 T1068 T1078 | Mapped |
| CVE-2022-41128 | Microsoft Windows | T1070 T1203 T1566 | Mapped |
| CVE-2022-41328 | Fortinet FortiOS | T1049 T1565.001 T1574 | Mapped |
| CVE-2022-42475 | Fortinet FortiOS | T1071.001 T1190 T1574 T1622 | Mapped |
| CVE-2022-42948 | Fortra Cobalt Strike | T1059 T1190 | Mapped |
| CVE-2022-43769 | Hitachi Vantara Pentaho Business Analytics (BA) Server | T1059 T1203 | Mapped |
| CVE-2022-43939 | Hitachi Vantara Pentaho Business Analytics (BA) Server | T1059 T1190 | Mapped |
| CVE-2022-47966 | Zoho ManageEngine | T1068 T1136.001 T1190 | Mapped |
| CVE-2023-0386 | Linux Kernel | T1055.012 T1543 | Stale |
| CVE-2023-0669 | Fortra GoAnywhere MFT | T1190 T1210 T1486 | Mapped |
| CVE-2023-1389 | TP-Link Archer AX21 | T1041 T1070 T1106 T1496 T1498 | Mapped |
| CVE-2023-20109 | Cisco IOS and IOS XE | T1059 T1078 T1499 | Mapped |
| CVE-2023-20118 | Cisco Small Business RV Series Routers | T1059 T1068 T1078 T1505.003 | Mapped |
| CVE-2023-20198 | Cisco IOS XE Web UI | T1136 T1190 | Mapped |
| CVE-2023-20269 | Cisco Adaptive Security Appliance and Firepower Threat Defense | T1078 T1133 | Mapped |
| CVE-2023-20273 | Cisco Cisco IOS XE Web UI | T1059 T1068 T1078 | Mapped |
| CVE-2023-20867 | VMware Tools | T1059 T1078 T1105 | Mapped |
| CVE-2023-20887 | VMware Aria Operations for Networks | T1059 T1190 | Mapped |
| CVE-2023-2136 | Google Chromium Skia | T1204.001 | Mapped |
| CVE-2023-21608 | Adobe Acrobat and Reader | T1203 T1204.002 | Mapped |
| CVE-2023-21674 | Microsoft Windows | T1068 T1078 | Mapped |
| CVE-2023-21715 | Microsoft Office | T1204.002 | Mapped |
| CVE-2023-22515 | Atlassian Confluence Data Center and Server | T1059 T1059.007 T1078 T1136 T1190 | Mapped |
| CVE-2023-22518 | Atlassian Confluence Data Center and Server | T1033 T1105 T1190 | Mapped |
| CVE-2023-22527 | Atlassian Confluence Data Center and Server | T1221 T1496 | Mapped |
| CVE-2023-22952 | SugarCRM Multiple Products | T1021.001 T1059 T1070.004 T1078 T1083 T1190 T1482 T1505.003 | Stale |
| CVE-2023-23397 | Microsoft Office | T1078 T1203 T1550.002 | Mapped |
| CVE-2023-2533 | PaperCut NG/MF | T1059 T1547 T1566.002 | Mapped |
| CVE-2023-26359 | Adobe ColdFusion | T1059 T1190 | Mapped |
| CVE-2023-26360 | Adobe ColdFusion | T1003.001 T1036.005 T1046 T1059.007 T1071.001 T1105 T1190 T1484.001 T1505.003 | Mapped |
| CVE-2023-26369 | Adobe Acrobat and Reader | T1203 T1204.002 | Mapped |
| CVE-2023-27350 | PaperCut MF/NG | T1059 T1105 T1190 | Mapped |
| CVE-2023-27524 | Apache Superset | T1078 T1190 | Mapped |
| CVE-2023-27532 | Veeam Backup & Replication | T1059.003 T1087 T1087.001 T1133 T1486 T1555 | Mapped |
| CVE-2023-27997 | Fortinet FortiOS and FortiProxy SSL-VPN | T1136 T1190 T1574 | Mapped |
| CVE-2023-28229 | Microsoft Windows CNG Key Isolation Service | T1068 T1078 | Mapped |
| CVE-2023-28252 | Microsoft Windows | T1003 T1021 T1059 T1068 T1078 T1136 T1486 | Mapped |
| CVE-2023-2868 | Barracuda Networks Email Security Gateway (ESG) Appliance | T1041 T1059 T1105 T1566.001 | Mapped |
| CVE-2023-29298 | Adobe ColdFusion | T1190 | Mapped |
| CVE-2023-29300 | Adobe ColdFusion | T1105 T1190 | Mapped |
| CVE-2023-29492 | Novi Survey Novi Survey | T1190 | Mapped |
| CVE-2023-32315 | Ignite Realtime Openfire | T1087.002 T1202 T1496 T1505.003 | Mapped |
| CVE-2023-33246 | Apache RocketMQ | T1059 T1190 | Mapped |
| CVE-2023-33538 | TP-Link Multiple Routers | T1059 T1068 | Mapped |
| CVE-2023-34048 | VMware vCenter Server | T1203 | Mapped |
| CVE-2023-34192 | Synacor Zimbra Collaboration Suite (ZCS) | T1055 T1059 T1185 | Mapped |
| CVE-2023-34362 | Progress MOVEit Transfer | T1005 T1059 T1082 T1105 T1136 T1190 T1531 | Mapped |
| CVE-2023-35078 | Ivanti Endpoint Manager Mobile (EPMM) | T1136 T1190 | Mapped |
| CVE-2023-35081 | Ivanti Endpoint Manager Mobile (EPMM) | T1059 T1190 | Mapped |
| CVE-2023-3519 | Citrix NetScaler ADC and NetScaler Gateway | T1087.002 T1105 T1190 T1574 | Mapped |
| CVE-2023-36844 | Juniper Junos OS | T1190 T1203 | Mapped |
| CVE-2023-36845 | Juniper Junos OS | T1059 T1190 | Mapped |
| CVE-2023-36846 | Juniper Junos OS | T1059 T1190 | Mapped |
| CVE-2023-36847 | Juniper Junos OS | T1059 T1190 | Mapped |
| CVE-2023-36851 | Juniper Junos OS | T1059 T1190 | Mapped |
| CVE-2023-36884 | Microsoft Windows | T1005 T1204.002 T1486 T1489 T1490 T1553.005 T1566 | Stale |
| CVE-2023-38035 | Ivanti Sentry | T1018 T1046 T1059 T1071.001 T1105 T1190 T1496 T1571 | Mapped |
| CVE-2023-38203 | Adobe ColdFusion | T1105 T1190 | Mapped |
| CVE-2023-38205 | Adobe ColdFusion | T1190 | Mapped |
| CVE-2023-38831 | RARLAB WinRAR | T1005 T1041 T1053 T1105 T1112 T1204 T1486 | Mapped |
| CVE-2023-38950 | ZKTeco BioTime | T1005 T1190 | Mapped |
| CVE-2023-39780 | ASUS RT-AX55 Routers | T1078 T1133 | Mapped |
| CVE-2023-40044 | Progress WS_FTP Server | T1059 T1071.002 T1202 | Mapped |
| CVE-2023-41179 | Trend Micro Apex One and Worry-Free Business Security | T1059 T1078 | Mapped |
| CVE-2023-42793 | JetBrains TeamCity | T1059.003 T1190 | Mapped |
| CVE-2023-43770 | Roundcube Webmail | T1059 T1082 T1189 | Mapped |
| CVE-2023-44221 | SonicWall SMA100 Appliances | T1068 T1543 T1548 | Mapped |
| CVE-2023-44487 | IETF HTTP/2 | T1190 T1499 | Mapped |
| CVE-2023-46604 | Apache ActiveMQ | T1053.005 T1190 | Mapped |
| CVE-2023-46805 | Ivanti Connect Secure and Policy Secure | T1078 T1190 T1505.003 T1555 | Mapped |
| CVE-2023-47565 | QNAP VioStor NVR | T1203 T1496 T1498 | Mapped |
| CVE-2023-48365 | Qlik Sense | T1059 T1133 T1190 | Mapped |
| CVE-2023-48788 | Fortinet FortiClient EMS | T1059 T1105 T1190 | Mapped |
| CVE-2023-49103 | ownCloud ownCloud graphapi | T1005 T1190 T1552 | Mapped |
| CVE-2023-4966 | Citrix NetScaler ADC and NetScaler Gateway | T1005 T1134.001 T1574 | Mapped |
| CVE-2023-49897 | FXC AE1021, AE1021PE | T1203 T1496 T1498 | Mapped |
| CVE-2023-5217 | Google Chromium libvpx | T1204.001 T1574 | Mapped |
| CVE-2023-5631 | Roundcube Webmail | T1041 T1059.007 T1204.001 | Mapped |
| CVE-2023-6548 | Citrix NetScaler ADC and NetScaler Gateway | T1055 | Mapped |
| CVE-2023-6549 | Citrix NetScaler ADC and NetScaler Gateway | T1499 T1574 | Mapped |
| CVE-2023-7024 | Google Chromium WebRTC | T1189 T1574 | Mapped |
| CVE-2023-7101 | Spreadsheet::ParseExcel Spreadsheet::ParseExcel | T1059 T1105 T1190 | Mapped |
| CVE-2024-0769 | D-Link DIR-859 Router | T1005 T1190 | Mapped |
| CVE-2024-11120 | GeoVision Multiple Devices | T1133 T1203 T1498 | Mapped |
| CVE-2024-11182 | MDaemon Email Server | T1059 T1566 T1567 | Mapped |
| CVE-2024-12686 | BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) | T1059 T1068 | Mapped |
| CVE-2024-12987 | DrayTek Vigor Routers | T1059 T1068 | Mapped |
| CVE-2024-13159 | Ivanti Endpoint Manager (EPM) | T1087 T1190 T1550.002 T1558 | Mapped |
| CVE-2024-13160 | Ivanti Endpoint Manager (EPM) | T1087 T1190 T1550.002 T1558 | Mapped |
| CVE-2024-13161 | Ivanti Endpoint Manager (EPM) | T1087 T1190 T1550.002 T1558 | Mapped |
| CVE-2024-20353 | Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | T1190 | Mapped |
| CVE-2024-20359 | Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | T1059 T1078 | Mapped |
| CVE-2024-20399 | Cisco NX-OS | T1059 T1078 | Mapped |
| CVE-2024-20439 | Cisco Smart Licensing Utility | T1106 T1552 | Mapped |
| CVE-2024-20953 | Oracle Agile Product Lifecycle Management (PLM) | T1059 T1190 | Mapped |
| CVE-2024-21413 | Microsoft Office Outlook | T1059 T1566.002 | Mapped |
| CVE-2024-21762 | Fortinet FortiOS | T1190 T1547.009 T1574 | Mapped |
| CVE-2024-21887 | Ivanti Connect Secure and Policy Secure | T1059 T1190 T1505.003 T1552 | Mapped |
| CVE-2024-21893 | Ivanti Connect Secure, Policy Secure, and Neurons | T1078 T1190 T1505.003 T1555 | Mapped |
| CVE-2024-23692 | Rejetto HTTP File Server | T1005 T1082 T1105 T1221 T1496 | Mapped |
| CVE-2024-24919 | Check Point Quantum Security Gateways | T1003.003 T1005 T1202 | Mapped |
| CVE-2024-26169 | Microsoft Windows | T1059 T1112 T1203 | Mapped |
| CVE-2024-27198 | JetBrains TeamCity | T1059 T1190 | Mapped |
| CVE-2024-27443 | Synacor Zimbra Collaboration Suite (ZCS) | T1041 T1114 T1566.002 | Mapped |
| CVE-2024-29059 | Microsoft .NET Framework | T1059 T1068 | Mapped |
| CVE-2024-30051 | Microsoft DWM Core Library | T1068 | Mapped |
| CVE-2024-34102 | Adobe Commerce and Magento Open Source | T1005 T1059 T1190 | Mapped |
| CVE-2024-37085 | VMware ESXi | T1068 T1078 | Mapped |
| CVE-2024-38080 | Microsoft Windows | T1068 T1204.002 | Mapped |
| CVE-2024-38112 | Microsoft Windows | T1189 T1204.001 | Mapped |
| CVE-2024-38475 | Apache HTTP Server | T1005 T1059 T1190 | Mapped |
| CVE-2024-40890 | Zyxel DSL CPE Devices | T1011 T1055 | Mapped |
| CVE-2024-40891 | Zyxel DSL CPE Devices | T1011 T1055 | Mapped |
| CVE-2024-41710 | Mitel SIP Phones | T1059 T1068 | Mapped |
| CVE-2024-41713 | Mitel MiCollab | T1005 T1068 | Mapped |
| CVE-2024-42009 | Roundcube Webmail | T1056 T1114 T1566.002 | Mapped |
| CVE-2024-4358 | Progress Telerik Report Server | T1190 | Mapped |
| CVE-2024-45195 | Apache OFBiz | T1059 T1133 T1203 T1498.001 | Mapped |
| CVE-2024-4577 | PHP Group PHP | T1003 T1003.001 T1033 T1041 T1053 T1059 T1068 T1071.001 T1112 T1190 T1543 T1570 | Mapped |
| CVE-2024-4671 | Google Chromium | T1059 T1189 | Mapped |
| CVE-2024-4761 | Google Chromium V8 | T1059 | Mapped |
| CVE-2024-48248 | NAKIVO Backup and Replication | T1003 T1005 T1190 | Mapped |
| CVE-2024-4879 | ServiceNow Utah, Vancouver, and Washington DC Now Platform | T1005 T1059 T1190 | Mapped |
| CVE-2024-4885 | Progress WhatsUp Gold | T1059 T1068 | Mapped |
| CVE-2024-49035 | Microsoft Partner Center | T1068 T1195 | Mapped |
| CVE-2024-4947 | Google Chromium V8 | T1059 T1189 | Mapped |
| CVE-2024-4978 | Justice AV Solutions Viewer | T1005 T1071.001 T1105 T1195.002 | Mapped |
| CVE-2024-50302 | Linux Kernel | T1005 T1011 T1091 | Mapped |
| CVE-2024-50603 | Aviatrix Controllers | T1055 T1059 | Mapped |
| CVE-2024-5217 | ServiceNow Utah, Vancouver, and Washington DC Now Platform | T1005 T1059 | Mapped |
| CVE-2024-5274 | Google Chromium V8 | T1189 T1203 | Mapped |
| CVE-2024-53104 | Linux Kernel | T1059 T1068 T1091 | Mapped |
| CVE-2024-53150 | Linux Kernel | T1005 T1011 T1091 | Mapped |
| CVE-2024-53197 | Linux Kernel | T1059 T1068 T1091 | Mapped |
| CVE-2024-53704 | SonicWall SonicOS | T1021.001 T1083 T1199 T1212 | Mapped |
| CVE-2024-54085 | AMI MegaRAC SPx | T1068 T1210 T1495 T1499 | Mapped |
| CVE-2024-55550 | Mitel MiCollab | T1005 T1041 T1190 | Mapped |
| CVE-2024-55591 | Fortinet FortiOS and FortiProxy | T1021 T1068 T1078 T1555 | Mapped |
| CVE-2024-56145 | Craft CMS Craft CMS | T1055 T1059 | Mapped |
| CVE-2024-57727 | SimpleHelp SimpleHelp | T1003 T1059 T1190 T1552.001 T1552.004 | Mapped |
| CVE-2024-57968 | Advantive VeraCore | T1059 T1078 | Mapped |
| CVE-2024-58136 | Yiiframework Yii | T1055 T1059 | Mapped |
| CVE-2024-6047 | GeoVision Multiple Devices | T1055 T1059 | Mapped |
| CVE-2025-0108 | Palo Alto Networks PAN-OS | T1055 T1190 T1565.001 | Mapped |
| CVE-2025-0111 | Palo Alto Networks PAN-OS | T1005 T1068 | Mapped |
| CVE-2025-0282 | Ivanti Connect Secure, Policy Secure, and ZTA Gateways | T1003 T1018 T1046 T1055 T1190 | Mapped |
| CVE-2025-0411 | 7-Zip 7-Zip | T1553.005 T1566.001 | Mapped |
| CVE-2025-0994 | Trimble Cityworks | T1059 T1068 | Mapped |
| CVE-2025-1316 | Edimax IC-7100 IP Camera | T1055 T1190 | Mapped |
| CVE-2025-1976 | Broadcom Brocade Fabric OS | T1059 T1068 | Mapped |
| CVE-2025-20281 | Cisco Identity Services Engine | T1059 T1106 | Mapped |
| CVE-2025-20337 | Cisco Identity Services Engine | T1059 T1106 | Mapped |
| CVE-2025-21333 | Microsoft Windows | T1003 T1068 | Mapped |
| CVE-2025-21334 | Microsoft Windows | T1003 T1068 | Mapped |
| CVE-2025-21335 | Microsoft Windows | T1003 T1068 | Mapped |
| CVE-2025-21391 | Microsoft Windows | T1068 T1485 T1490 | Mapped |
| CVE-2025-21418 | Microsoft Windows | T1005 T1055 T1068 | Mapped |
| CVE-2025-21480 | Qualcomm Multiple Chipsets | T1055 T1495 | Mapped |
| CVE-2025-21590 | Juniper Junos OS | T1059 T1068 | Mapped |
| CVE-2025-22224 | VMware ESXi and Workstation | T1055 T1611 | Mapped |
| CVE-2025-22225 | VMware ESXi | T1068 T1611 | Mapped |
| CVE-2025-22226 | VMware ESXi, Workstation, and Fusion | T1005 T1611 | Mapped |
| CVE-2025-22457 | Ivanti Connect Secure, Policy Secure, and ZTA Gateways | T1059 T1190 | Mapped |
| CVE-2025-23006 | SonicWall SMA1000 Appliances | T1059 T1190 | Mapped |
| CVE-2025-24016 | Wazuh Wazuh Server | T1059 T1078 T1203 | Mapped |
| CVE-2025-24054 | Microsoft Windows | T1555 T1566 | Mapped |
| CVE-2025-24085 | Apple Multiple Products | T1059 T1068 | Mapped |
| CVE-2025-24201 | Apple Multiple Products | T1059 T1189 | Mapped |
| CVE-2025-24985 | Microsoft Windows | T1059 T1091 | Mapped |
| CVE-2025-24991 | Microsoft Windows | T1005 T1091 | Mapped |
| CVE-2025-24993 | Microsoft Windows | T1055 T1068 T1203 T1204 T1565 | Mapped |
| CVE-2025-25181 | Advantive VeraCore | T1055 T1068 T1485 | Mapped |
| CVE-2025-25257 | Fortinet FortiWeb | T1055 T1068 T1190 T1485 | Mapped |
| CVE-2025-27038 | Qualcomm Multiple Chipsets | T1059 T1203 | Mapped |
| CVE-2025-27363 | FreeType FreeType | T1204.002 T1499.004 T1574 | Mapped |
| CVE-2025-2783 | Google Chromium Mojo | T1203 T1497 T1548 | Mapped |
| CVE-2025-30397 | Microsoft Windows | T1059 T1203 | Mapped |
| CVE-2025-30400 | Microsoft Windows | T1068 T1112 | Mapped |
| CVE-2025-30406 | Gladinet CentreStack | T1059 T1203 | Mapped |
| CVE-2025-31161 | CrushFTP CrushFTP | T1059 T1078 T1136 | Mapped |
| CVE-2025-31200 | Apple Multiple Products | T1059 T1105 T1106 T1203 T1557 | Stale |
| CVE-2025-31201 | Apple Multiple Products | T1059 T1105 T1106 T1203 T1557 | Stale |
| CVE-2025-31324 | SAP NetWeaver | T1055 T1059 T1505.003 | Mapped |
| CVE-2025-32433 | Erlang Erlang/OTP | T1059 | Mapped |
| CVE-2025-3248 | Langflow Langflow | T1059 T1203 | Mapped |
| CVE-2025-32701 | Microsoft Windows | T1003.001 T1059 T1068 T1543 | Mapped |
| CVE-2025-32706 | Microsoft Windows | T1003.001 T1059 T1068 T1543 | Mapped |
| CVE-2025-32709 | Microsoft Windows | T1003 T1059 T1068 T1543 | Mapped |
| CVE-2025-32756 | Fortinet Multiple Products | T1003 T1041 T1046 T1059 T1070.004 T1133 | Mapped |
| CVE-2025-33053 | Microsoft Windows | T1041 T1056.001 T1059 T1543 T1566.001 | Mapped |
| CVE-2025-34028 | Commvault Command Center | T1059.007 T1190 | Mapped |
| CVE-2025-35939 | Craft CMS Craft CMS | T1059 T1190 T1505.003 | Mapped |
| CVE-2025-3928 | Commvault Web Server | T1059 T1505.003 | Mapped |
| CVE-2025-3935 | ConnectWise ScreenConnect | T1059 T1203 | Mapped |
| CVE-2025-42599 | Qualitia Active! Mail | T1059 T1190 T1499 | Mapped |
| CVE-2025-42999 | SAP NetWeaver | T1059 T1190 T1203 T1505.003 | Mapped |
| CVE-2025-43200 | Apple Multiple Products | T1005 T1105 T1203 | Mapped |
| CVE-2025-4427 | Ivanti Endpoint Manager Mobile (EPMM) | T1059 T1190 T1203 T1505.003 | Mapped |
| CVE-2025-4428 | Ivanti Endpoint Manager Mobile (EPMM) | T1059 T1190 T1543 | Mapped |
| CVE-2025-4632 | Samsung MagicINFO 9 Server | T1059 T1068 T1496 | Mapped |
| CVE-2025-47812 | Wing FTP Server Wing FTP Server | T1059 T1068 | Mapped |
| CVE-2025-48927 | TeleMessage TM SGNL | T1005 T1212 T1555 | Mapped |
| CVE-2025-48928 | TeleMessage TM SGNL | T1005 T1212 T1555 | Mapped |
| CVE-2025-49704 | Microsoft SharePoint | T1059.003 T1190 | Mapped |
| CVE-2025-49706 | Microsoft SharePoint | T1059.003 T1190 T1505 | Mapped |
| CVE-2025-53770 | Microsoft SharePoint | T1059 T1190 | Mapped |
| CVE-2025-5419 | Google Chromium V8 | T1189 T1203 | Mapped |
| CVE-2025-54309 | CrushFTP CrushFTP | T1021 T1068 T1567 | Mapped |
| CVE-2025-5777 | Citrix NetScaler ADC and Gateway | T1190 T1555 | Mapped |
| CVE-2025-6543 | Citrix NetScaler ADC and Gateway | T1059 T1203 T1498 | Mapped |
| CVE-2025-6554 | Google Chromium V8 | T1059 T1189 T1203 | Mapped |
| CVE-2025-6558 | Google Chromium | T1189 T1203 T1497 | Mapped |