Advantive Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for Advantive products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

2

In CISA KEV

2

Beyond CISA KEV

0

Sensor Observed

0

Virtual Patch Available

0

Advantive KEVs Added by Year

Loading...

2 Advantive KEVs added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2025-25181

A SQL injection vulnerability in timeoutWarning.asp in Advantive VeraCore through 2025.1.0 allows remote attackers to execute arbitrary SQL...

Confirmed In CISA 10 Mar 2025
CVE-2024-57968

Advantive VeraCore before 2024.4.2.1 allows remote authenticated users to upload files to unintended folders (e.g., ones that are accessible during...

Confirmed In CISA 10 Mar 2025

Common Vulnerability Classes (CWE)

  • CWE-434 — Unrestricted Upload of File with Dangerous Type 1
  • CWE-89 — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology