skyhighsecurity kayıtları
skyhighsecurity üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-256 Plaintext Storage of a Password1
- CWE-290 Authentication Bypass by Spoofing1
- CWE-670 Always-Incorrect Control Flow Implementation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2022-2310İstismar yok | Skyhigh SWG Authentication bypass vulnerabilityskyhighsecurity · secure web gateway · CWE-290 | Kritik9,8 | — | %1,2 | 27 Tem 2022 |
26İzleyin | CVE-2023-4400İstismar yok | A password management vulnerability in Skyhigh Secure Web Gateway (SWG) in main releases 11.x prior to 11.2.14, 10.x prior to 10.2.25 and cskyhighsecurity · secure web gateway · CWE-256 | Orta6,5 | — | %0,4 | 13 Eyl 2023 |
22İzleyin | CVE-2024-0313İstismar yok | A malicious insider exploiting this vulnerability can circumvent existing security controls put in place by the organization.skyhigh · skyhigh client proxy · CWE-670 | Orta5,5 | — | %0,2 | 14 Mar 2024 |
21İzleyin | CVE-2024-6398İstismar yok | An information disclosure vulnerability in SWG in versions 12.x prior to 12.2.10 and 11.x prior to 11.2.24 allows information stored in a cuskyhighsecurity · secure web gateway · CWE-200 | Orta5,3 | — | %0,3 | 15 Tem 2024 |
- CVE-2022-231039İzleyin
Skyhigh SWG Authentication bypass vulnerability
KritikCVSS 9,8İstismar yokEPSS %1skyhighsecurity · secure web gateway27 Tem 2022
- CVE-2023-440026İzleyin
A password management vulnerability in Skyhigh Secure Web Gateway (SWG) in main releases 11.x prior to 11.2.14, 10.x prior to 10.2.25 and c
OrtaCVSS 6,5İstismar yokEPSS %0skyhighsecurity · secure web gateway13 Eyl 2023
- CVE-2024-031322İzleyin
A malicious insider exploiting this vulnerability can circumvent existing security controls put in place by the organization.
OrtaCVSS 5,5İstismar yokEPSS %0skyhigh · skyhigh client proxy14 Mar 2024
- CVE-2024-639821İzleyin
An information disclosure vulnerability in SWG in versions 12.x prior to 12.2.10 and 11.x prior to 11.2.24 allows information stored in a cu
OrtaCVSS 5,3İstismar yokEPSS %0skyhighsecurity · secure web gateway15 Tem 2024