Skip to content
Noroxi

controlup records

3 published records for vendor controlup.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

3 records
  • An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attacker to run OS command

    HighCVSS 7.8No exploitEPSS 0%

    controlup · real-time agentJan 4, 2022

  • In ControlUp Real-Time Agent before 8.6, an unquoted path can result in privilege escalation.

    HighCVSS 7.2No exploitEPSS 1%

    controlup · controlupApr 27, 2022

  • A hardcoded key in ControlUp Real-Time Agent (cuAgent.exe) before 8.2.5 may allow a potential attacker to run OS commands via a WCF channel.

    HighCVSS 7.2No exploitEPSS 1%

    controlup · controlup agentJan 4, 2022