Eclypsium InfraTrust Pulse Highlights 26 Remotely‑Exploitable Infrastructure Vulnerabilities, Including Actively‑Exploited Flaws in SonicWall, Fortinet, Dell, and F5
What Happened — Eclypsium’s new InfraTrust knowledge base released its inaugural July 2026 Pulse report, aggregating 61 advisories from 14 infrastructure vendors. The report flags 26 remotely‑exploitable, unauthenticated vulnerabilities (six rated critical) and surfaces several flaws already listed in CISA’s Known Exploited Vulnerabilities (KEV) catalog.
Why It Matters for Compliance & Audit Readiness
- The highlighted flaws map directly to SOC 2 CC6.1 (Change Management) and CC7.1 (System Operations) controls; failing to remediate them leaves a gap in documented change‑control evidence.
- Continuous‑compliance programs must ingest external vulnerability feeds, prioritize remediation, and retain proof‑of‑remediation to satisfy audit‑ready evidence requirements.
- Verisq’s Control Mapping capability can automatically correlate each advisory to the relevant SOC 2 control, generating real‑time audit evidence.
Who Is Affected — Enterprises that operate internet‑exposed routers, firewalls, VPN appliances, load balancers, and data‑center networking gear; sectors include telecom, cloud providers, and any organization with edge devices.
Recommended Actions
- Map each listed advisory to your SOC 2 control set (e.g., CC6.1, CC7.1) and record remediation tickets as audit evidence.
- Integrate a threat‑intelligence feed (e.g., InfraTrust Pulse) into your vulnerability‑management platform for continuous prioritization.
- Validate that patching windows, change‑approval workflows, and post‑remediation testing are documented and retained for audit review.
Source: BleepingComputer – New InfraTrust report reveals infrastructure flaws admins should patch first
Technical Notes
- Advisories span SonicWall SMA1000 (remote‑access appliance), Fortinet FortiSandbox (unauthenticated command injection), Dell Networking OS10/SmartFabric Manager (fabric‑management RCE), F5 BIG‑IP (application delivery controller), Juniper (DoS‑capable flaws), and NVIDIA BlueField/ConnectX (DPUs/SmartNICs).
- Many are flagged in CISA’s KEV catalog, indicating active exploitation in the wild.