Skip to content
Noroxi

cosign records

2 published records for vendor cosign.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      2 records
      • CVE-2007-2232
        31Monitor

        The CHECK command in Cosign 2.0.1 and earlier allows remote attackers to bypass authentication requirements via CR (\r) sequences in the cos

        HighCVSS 7.5Proof of conceptEPSS 2%

        cosign · cosignApr 25, 2007

      • CVE-2007-2233
        27Monitor

        cosign-bin/cosign.cgi in Cosign 2.0.2 and earlier allows remote authenticated users to perform unauthorized actions as an arbitrary user by

        MediumCVSS 6.5Proof of conceptEPSS 2%

        cosign · cosignApr 25, 2007