haystacksoftware records
3 published records for vendor haystacksoftware.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-732 Incorrect Permission Assignment for Critical Resource2
- CWE-522 Insufficiently Protected Credentials1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2017-16928Proof of concept | The arq_updater binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privileges haystacksoftware · arq · CWE-732 | High7.8 | — | 1.0% | Jan 31, 2018 |
31Monitor | CVE-2017-16945Proof of concept | The standardrestorer binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privilhaystacksoftware · arq · CWE-732 | High7.8 | — | 1.0% | Jan 31, 2018 |
19Monitor | CVE-2022-36617No exploit | Arq Backup 7.19.5.0 and below stores backup encryption passwords using reversible encryption.haystacksoftware · arq backup · CWE-522 | Medium4.9 | — | 0.5% | Sep 9, 2022 |
- CVE-2017-1692831Monitor
The arq_updater binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privileges
HighCVSS 7.8Proof of conceptEPSS 1%haystacksoftware · arqJan 31, 2018
- CVE-2017-1694531Monitor
The standardrestorer binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privil
HighCVSS 7.8Proof of conceptEPSS 1%haystacksoftware · arqJan 31, 2018
- CVE-2022-3661719Monitor
Arq Backup 7.19.5.0 and below stores backup encryption passwords using reversible encryption.
MediumCVSS 4.9No exploitEPSS 1%haystacksoftware · arq backupSep 9, 2022