Vulnerability Report – January 2025

Vulnerability Report – January 2025

February 1, 2025

 #VulnerabilityReport#Report

All vulnerability reports

Introduction

This vulnerability report has been generated using data aggregated on Vulnerability-Lookup, with contributions from the platform’s community.

It highlights the most frequently mentioned vulnerability for January 2025, based on sightings collected from various sources, including MISP, Exploit-DB, Bluesky, Mastodon, GitHub Gists, The Shadowserver Foundation, Nuclei, and more. For further details, please visit this page.

The final section focuses on exploitations observed through The Shadowserver Foundation’s honeypot network.

January at a glance

Sightings repartition per day

Month at a glance

Repartition of all type of sightings per day for the month of January.

For more detailed information, check out the Vulnerability-Lookup dashboard:
https://vulnerability.circl.lu

Top 15 vulnerabilities of the month

VulnerabilityVendorProductSeverity
CVE-2025-0282IvantiConnect Secure9.0
CVE-2024-55591FortinetFortiOS9.8
CVE-2024-49113MicrosoftWindows 10 Version 18097.5
CVE-2015-2051D-LinkDIR-6458.8
CVE-2025-24085ApplevisionOS7.3
CVE-2025-0283IvantiConnect Secure7.0
CVE-2018-10562dasannetworksgpon_router9.8
CVE-2017-17215HuaweiHG5328.8
CVE-2024-7344RadixSmartRecovery8.2
CVE-2014-8361Realtek8.8
CVE-2016-10372eird1000_modem9.8
CVE-2016-6277netgear8.8
CVE-2025-23006SonicWallSMA10009.8
CVE-2017-9841PHPUnitPHPUnit9.8
CVE-2024-50603AviatrixController10.0

Evolution per week

Week 1

Ranking

Sightings week 1

Week 2

Ranking

Sightings week 2

Insights from contributors

Week 3

Ranking

Sightings week 3

Insights from contributors

Week 4

Ranking

Sightings week 4

Insights from contributors

Week 5

Ranking

Sightings week 5

Insights from contributors

Continuous exploitation

The sightings used for this analysis were collected through The Shadowserver Foundation’s honeypot network.
Patches are available for the following three vulnerabilities!

CVE-2017-9841 - PHPUnit

Exploitations PHPUnit

CVE-2015-2051 - D-Link

Exploitations D-Link

On Exploit-DB.

CVE-2017-17215 - Huawei HG532

Exploitations Huawei

Thank you

Thank you to all the contributors and our diverse sources!

If you want to contribute to the next report, you can create your account.