Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-67248: CWE-121 Stack-based buffer overflow in ASUSTOR Inc. ADMCVE-2026-67248 0 A stack-based buffer overflow vulnerability was found in the File Explorer on the ADM. The vulnerability occurs because user-controlled input is not properly validated before being decoded and copied into a fixed-size stack buffer. An authenticated attacker can exploit this issue to cause denial of service of the affected CGI process. Further impact may be possible depending on exploitability and runtime protections. Affected products and versions include: from ADM 4.1.0 through ADM 4.3.3.RUN1 as well as from ADM 5.0.0 through ADM 5.1.3.RI81. Join the discussion | CVE Database V5 | 07/30/2026, 03:48:04 UTC Added: 07/30/2026, 04:22:58 UTC |
CVE-2026-67246: CWE-22 Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) in ASUSTOR Inc. ADMCVE-2026-67246 0 A path traversal vulnerability was found in the Wallpaper component of ADM. The vulnerability occurs because user-controlled wallpaper path input is not sufficiently validated before being used for file access. An authenticated attacker can exploit this issue to access or manipulate files outside the intended wallpaper directory, subject to user permissions and filesystem restrictions. Affected products and versions include: from ADM 4.1.0 through ADM 4.3.3.RUN1 as well as from ADM 5.0.0 through ADM 5.1.3.RI81. Join the discussion | CVE Database V5 | 07/30/2026, 03:33:52 UTC Added: 07/30/2026, 04:22:58 UTC |
CVE-2026-67245: CWE-22: Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) in ASUSTOR Inc. ADMCVE-2026-67245 0 A path traversal vulnerability was found in the VPN Clients on the ADM. The vulnerability occurs because user-controlled certificate name input is not sufficiently validated before being used to construct the upload destination path. An authenticated attacker can exploit this issue to write an uploaded certificate file outside the intended VPN certificate directory, subject to process privileges and filesystem permissions. Affected products and versions include: from ADM 4.1.0 through ADM 4.3.3.RUN1 as well as from ADM 5.0.0 through ADM 5.1.3.RI81. Join the discussion | CVE Database V5 | 07/30/2026, 03:29:03 UTC Added: 07/30/2026, 04:22:58 UTC |
CVE-2026-18188: CWE-134 Use of Externally-Controlled format string in ASUSTOR Inc. ADMCVE-2026-18188 0 A format string vulnerability was found in the Rsync Backup on the ADM. The vulnerability occurs because user-controlled rsync backup configuration or log data may be processed through an unsafe format string operation. An authenticated attacker can exploit this issue to disclose memory information or cause denial of service of the affected backup component. Affected products and versions include: from ADM 4.1.0 through ADM 4.3.3.RUN1 as well as from ADM 5.0.0 through ADM 5.1.3.RI81. Join the discussion | CVE Database V5 | 07/30/2026, 02:59:08 UTC Added: 07/30/2026, 03:22:39 UTC |
Showing 1 to 4 of 4 results