Записи atos
28 опубликованных записей вендора atos.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 7
- С записью об исправлении
- 3,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')12
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-269 Improper Privilege Management1
- CWE-287 Improper Authentication1
- CWE-331 Insufficient Entropy1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
28 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2014-2650Эксплойта нет | Unify OpenStage / OpenScape Desk Phone IP before V3 R3.11.0 SIP has an OS command injection vulnerability in the web based management interfatos · openstage 80 firmware · CWE-78 | Критическая9,8 | — | 2,6 % | 9 янв. 2020 г. |
40В плане | CVE-2023-6269Эксплойта нет | Argument injection vulnerability in Atos Unify OpenScape Session Border Controller, Atos Unify OpenScape Branch and Atos Unify OpenScape BCFatos · unify openscape bcf · CWE-88 | Критическая9,8 | — | 1,9 % | 5 дек. 2023 г. |
40В плане | CVE-2022-46404Эксплойта нет | A command injection vulnerability has been identified in Atos Unify OpenScape 4000 Assistant and Unify OpenScape 4000 Manager (8 before R2.2atos · unify openscape 4000 assistant · CWE-77 | Критическая9,8 | — | 1,9 % | 13 дек. 2022 г. |
40В плане | CVE-2014-2651Эксплойта нет | Unify OpenStage/OpenScape Desk Phone IP SIP before V3 R3.11.0 has an authentication bypass in the default mode of the Workpoint Interfaceatos · openstage 80 firmware · CWE-287 | Критическая9,8 | — | 1,7 % | 9 янв. 2020 г. |
39Наблюдать | CVE-2023-35034Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8 allow reatos · unify openscape 4000 assistant · CWE-94 | Критическая9,8 | — | 1,3 % | 11 июн. 2023 г. |
39Наблюдать | CVE-2022-36444Эксплойта нет | An issue was discovered in Atos Unify OpenScape SBC 9 and 10 before 10R2.2.1, Atos Unify OpenScape Branch 9 and 10 before version 10R2.1.1, atos · unify openscape bcf | Критическая9,8 | — | 1,0 % | 25 июл. 2022 г. |
39Наблюдать | CVE-2023-29475Эксплойта нет | inventory in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attackatos · unify openscape 4000 · CWE-77 | Критическая9,8 | — | 0,9 % | 6 апр. 2023 г. |
39Наблюдать | CVE-2023-29474Эксплойта нет | inventory in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attackatos · unify openscape 4000 · CWE-77 | Критическая9,8 | — | 0,8 % | 6 апр. 2023 г. |
39Наблюдать | CVE-2023-29473Эксплойта нет | webservice in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attacatos · unify openscape 4000 · CWE-77 | Критическая9,8 | — | 0,8 % | 6 апр. 2023 г. |
35Наблюдать | CVE-2023-35033Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 Ratos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,6 % | 11 июн. 2023 г. |
35Наблюдать | CVE-2023-35031Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 Ratos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,6 % | 11 июн. 2023 г. |
35Наблюдать | CVE-2023-35032Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8 allow coatos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,6 % | 11 июн. 2023 г. |
35Наблюдать | CVE-2023-35035Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 Ratos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,6 % | 11 июн. 2023 г. |
35Наблюдать | CVE-2023-45355Эксплойта нет | Atos Unify OpenScape 4000 Platform V10 R1 before Hotfix V10 R1.42.2 and 4000 and Manager Platform V10 R1 before Hotfix V10 R1.42.2 allow comatos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,3 % | 9 окт. 2023 г. |
35Наблюдать | CVE-2023-45356Эксплойта нет | Atos Unify OpenScape 4000 Platform V10 R1 before Hotfix V10 R1.42.2 4000 and Manager Platform V10 R1 before Hotfix V10 R1.42.2 allow commandatos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,3 % | 9 окт. 2023 г. |
35Наблюдать | CVE-2023-45351Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.1, 4000 Assistant V10 R0, 4000 Manager V10 R1 before V10 R1.42.1, and 4000 Managatos · unify openscape 4000 assistant · CWE-77 | Высокая8,8 | — | 1,3 % | 9 окт. 2023 г. |
35Наблюдать | CVE-2023-45354Эксплойта нет | Atos Unify OpenScape Common Management Portal V10 before V10 R4.17.0 and V10 R5.1.0 allows an authenticated remote attacker to execute arbitatos · unify openscape common management | Высокая8,8 | — | 0,9 % | 9 окт. 2023 г. |
35Наблюдать | CVE-2023-45352Эксплойта нет | Atos Unify OpenScape Common Management Portal V10 before V10 R4.17.0 and V10 R5.1.0 allows an authenticated attacker to execute arbitrary coatos · unify openscape common management · CWE-22 | Высокая8,8 | — | 0,8 % | 9 окт. 2023 г. |
35Наблюдать | CVE-2023-45353Эксплойта нет | Atos Unify OpenScape Common Management Portal V10 before V10 R4.17.0 and V10 R5.1.0 allows an authenticated attacker to execute arbitrary coatos · unify openscape common management · CWE-434 | Высокая8,8 | — | 0,7 % | 9 окт. 2023 г. |
35Наблюдать | CVE-2023-45350Эксплойта нет | Atos Unify OpenScape 4000 Manager V10 R1 before V10 R1.42.1 and 4000 Manager V10 R0 allow Privilege escalation that may lead to the ability atos · unify openscape 4000 manager | Высокая8,8 | — | 0,6 % | 9 окт. 2023 г. |
32Наблюдать | CVE-2014-8422Эксплойта нет | The web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 generunify · openstage sip · CWE-331 | Высокая8,1 | — | 1,6 % | 12 апр. 2018 г. |
31Наблюдать | CVE-2019-19866Эксплойта нет | Atos Unify OpenScape UC Web Client V9 before version V9 R4.31.0 and V10 before version V10 R0.6.0 allows remote attackers to obtain sensitivatos · unify openscape uc web client · CWE-639 | Высокая7,5 | — | 1,9 % | 21 февр. 2020 г. |
31Наблюдать | CVE-2014-8421Эксплойта нет | Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 allow remote attackers to gain super-user privileunify · openstage sip · CWE-264 | Высокая7,5 | — | 1,8 % | 12 апр. 2018 г. |
31Наблюдать | CVE-2023-41099Эксплойта нет | In the Windows installer in Atos Eviden CardOS API before 5.5.5.2811, Local Privilege Escalation can occur.(from a regular user to SYSTEM).atos · eviden cardos api · CWE-269 | Высокая7,8 | — | 0,1 % | 22 мар. 2024 г. |
30Наблюдать | CVE-2023-45349Эксплойта нет | Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.34.7, 4000 Assistant V10 R1.42.0, 4000 Assistant V10 R0, 4000 Manager V10 R1 beforeatos · unify openscape 4000 assistant | Высокая7,5 | — | 0,5 % | 9 окт. 2023 г. |
- CVE-2014-265040В плане
Unify OpenStage / OpenScape Desk Phone IP before V3 R3.11.0 SIP has an OS command injection vulnerability in the web based management interf
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %atos · openstage 80 firmware9 янв. 2020 г.
- CVE-2023-626940В плане
Argument injection vulnerability in Atos Unify OpenScape Session Border Controller, Atos Unify OpenScape Branch and Atos Unify OpenScape BCF
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %atos · unify openscape bcf5 дек. 2023 г.
- CVE-2022-4640440В плане
A command injection vulnerability has been identified in Atos Unify OpenScape 4000 Assistant and Unify OpenScape 4000 Manager (8 before R2.2
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %atos · unify openscape 4000 assistant13 дек. 2022 г.
- CVE-2014-265140В плане
Unify OpenStage/OpenScape Desk Phone IP SIP before V3 R3.11.0 has an authentication bypass in the default mode of the Workpoint Interface
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %atos · openstage 80 firmware9 янв. 2020 г.
- CVE-2023-3503439Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8 allow re
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %atos · unify openscape 4000 assistant11 июн. 2023 г.
- CVE-2022-3644439Наблюдать
An issue was discovered in Atos Unify OpenScape SBC 9 and 10 before 10R2.2.1, Atos Unify OpenScape Branch 9 and 10 before version 10R2.1.1,
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %atos · unify openscape bcf25 июл. 2022 г.
- CVE-2023-2947539Наблюдать
inventory in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attack
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %atos · unify openscape 40006 апр. 2023 г.
- CVE-2023-2947439Наблюдать
inventory in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attack
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %atos · unify openscape 40006 апр. 2023 г.
- CVE-2023-2947339Наблюдать
webservice in Atos Unify OpenScape 4000 Platform and OpenScape 4000 Manager Platform 10 R1 before 10 R1.34.4 allows an unauthenticated attac
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %atos · unify openscape 40006 апр. 2023 г.
- CVE-2023-3503335Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 R
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %atos · unify openscape 4000 assistant11 июн. 2023 г.
- CVE-2023-3503135Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 R
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %atos · unify openscape 4000 assistant11 июн. 2023 г.
- CVE-2023-3503235Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8 allow co
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %atos · unify openscape 4000 assistant11 июн. 2023 г.
- CVE-2023-3503535Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 R
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %atos · unify openscape 4000 assistant11 июн. 2023 г.
- CVE-2023-4535535Наблюдать
Atos Unify OpenScape 4000 Platform V10 R1 before Hotfix V10 R1.42.2 and 4000 and Manager Platform V10 R1 before Hotfix V10 R1.42.2 allow com
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape 4000 assistant9 окт. 2023 г.
- CVE-2023-4535635Наблюдать
Atos Unify OpenScape 4000 Platform V10 R1 before Hotfix V10 R1.42.2 4000 and Manager Platform V10 R1 before Hotfix V10 R1.42.2 allow command
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape 4000 assistant9 окт. 2023 г.
- CVE-2023-4535135Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.1, 4000 Assistant V10 R0, 4000 Manager V10 R1 before V10 R1.42.1, and 4000 Manag
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape 4000 assistant9 окт. 2023 г.
- CVE-2023-4535435Наблюдать
Atos Unify OpenScape Common Management Portal V10 before V10 R4.17.0 and V10 R5.1.0 allows an authenticated remote attacker to execute arbit
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape common management9 окт. 2023 г.
- CVE-2023-4535235Наблюдать
Atos Unify OpenScape Common Management Portal V10 before V10 R4.17.0 and V10 R5.1.0 allows an authenticated attacker to execute arbitrary co
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape common management9 окт. 2023 г.
- CVE-2023-4535335Наблюдать
Atos Unify OpenScape Common Management Portal V10 before V10 R4.17.0 and V10 R5.1.0 allows an authenticated attacker to execute arbitrary co
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape common management9 окт. 2023 г.
- CVE-2023-4535035Наблюдать
Atos Unify OpenScape 4000 Manager V10 R1 before V10 R1.42.1 and 4000 Manager V10 R0 allow Privilege escalation that may lead to the ability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %atos · unify openscape 4000 manager9 окт. 2023 г.
- CVE-2014-842232Наблюдать
The web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 gener
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %unify · openstage sip12 апр. 2018 г.
- CVE-2019-1986631Наблюдать
Atos Unify OpenScape UC Web Client V9 before version V9 R4.31.0 and V10 before version V10 R0.6.0 allows remote attackers to obtain sensitiv
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %atos · unify openscape uc web client21 февр. 2020 г.
- CVE-2014-842131Наблюдать
Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 allow remote attackers to gain super-user privile
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %unify · openstage sip12 апр. 2018 г.
- CVE-2023-4109931Наблюдать
In the Windows installer in Atos Eviden CardOS API before 5.5.5.2811, Local Privilege Escalation can occur.(from a regular user to SYSTEM).
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %atos · eviden cardos api22 мар. 2024 г.
- CVE-2023-4534930Наблюдать
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.34.7, 4000 Assistant V10 R1.42.0, 4000 Assistant V10 R0, 4000 Manager V10 R1 before
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %atos · unify openscape 4000 assistant9 окт. 2023 г.