CVE Watch · free for anyone

Know the day a CVE names a product you sell.

CVE Watch is a free alerting service from Skans Labs. Pick the vendors and products you sell, install or support — cameras, PLCs, controllers, switches, servers — and we email you the day a new CVE, a CISA Known Exploited Vulnerability, or an ICS advisory names one of them. No appliance, no licence, no card. Just a portal account.

portal.skanslabs.com · CVE Watch
The CVE Watch page in the Skans portal — watched vendors and products on the left, the matching CVEs with severity, KEV and ICS badges on the right.

Who it's for

Built for the people who sell and service the gear.

Most CVE tooling is written for the security team that owns the network. CVE Watch is written for everyone else in the chain — the people whose customers will call them when a headline lands.

Integrators and installers

You put the cameras, access controllers and PLCs in. When a CVE names one, you are the first call. Know before the customer does, and walk in with the answer.

Sales teams and resellers

Watch the product lines you carry. A new Critical or KEV entry is a reason to call every account running it — with a fix, an upgrade, or a Skans appliance that patches it on-site.

OT, facilities and building teams

Watch the exact controllers, BMS heads and drives on your floor. ICS advisories and KEV entries land in your inbox the day they publish, not in a quarterly report.

MSPs and service desks

Watch the whole stack your customers run and triage from one list — filtered to the last 30 days, Critical only, or actively exploited only.

How it works

Three steps. Nothing to install.

Create a free portal account, type the vendors and products you care about, and pick how you want to hear about matches. CVE Watch does the rest against a corpus that refreshes continuously.

  • 1. Sign up free — an email and password, or sign in with Google, Microsoft or GitHub. No card, no appliance, no sales call.
  • 2. Watch what you sell — search a vendor or a product and add it. Watch a whole vendor (every Siemens product) or one line (a single camera family). Family spellings are matched for you.
  • 3. Get the alert — an email the day a CVE, KEV entry or ICS advisory names a watched product, plus a digest on your schedule. Open the portal to filter by window, severity, KEV and ICS.
  • Stop any time — unwatch a product or switch alerts off in one click. Your list is yours.
portal.skanslabs.com · CVE Watch
CVE Watch matches filtered to the last 30 days and Critical severity — nine actively exploited CVEs against the watched products.

What's behind it

The same corpus that powers the Skans appliance.

CVE Watch runs on the vulnerability index Skans Labs maintains for its on-site appliance — the public CVE List, CISA KEV and the ICS advisory feed, joined to a vendor and product catalogue.

386,916 CVEs

The full public CVE List, refreshed continuously, with CVSS severity on every record so you can filter to Critical or High without reading the rest.

1,695 known exploited

Every entry in the CISA Known Exploited Vulnerabilities catalog is flagged, and a KEV entry always shows regardless of your severity filter — exploited is exploited.

3,992 ICS advisories

CISA ICS and medical advisories mapped to the products they name, so a Rockwell, Siemens or Schneider advisory reaches you the same day as a CVE would.

181,571 products, 37,660 vendors

Watch at whatever grain you sell — a vendor, a product family, or one model — and the match follows the CVE's own affected-product list.

And when the alert lands

From "a CVE names it" to "it's patched on-site".

CVE Watch tells you a product you sell is exposed. The Skans appliance is what closes it — on the customer's network, without the network ever touching the internet.

  • Match against the live inventory — on-site, Skans joins the same CVE corpus against each device's installed version, so a patched host reads clean.
  • Patch it in rings — route the fix into approved patch rings and let a human approve it, cameras and PLCs included.
  • Prove it — the evidence lands in the compliance views mapped to NIST 800-171 and CMMC.
  • Free to start there too — the Community edition of the appliance is free, and every edition has every capability that protects or manages the enclave (Notification Branding is Enterprise-only).
Skans console · Devices
The Skans device inventory — the per-host software and firmware picture the appliance matches CVEs against.

Talk to us

Start watching the products you sell.

A free portal account is all it takes. Add your first vendor in under a minute, and the next CVE that names it lands in your inbox the day it publishes.