heimdalsecurity records
7 published records for vendor heimdalsecurity.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-1333 Inefficient Regular Expression Complexity2
- CWE-20 Improper Input Validation1
- CWE-281 Improper Preservation of Permissions1
- CWE-295 Improper Certificate Validation1
- CWE-306 Missing Authentication for Critical Function1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2023-29486No exploit | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB access restrictionsheimdalsecurity · thor · CWE-1333 | Critical9.8 | — | 1.0% | Dec 20, 2023 |
39Monitor | CVE-2023-29485No exploit | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows attackers to bypassheimdalsecurity · thor · CWE-306 | Critical9.8 | — | 1.0% | Dec 20, 2023 |
36Monitor | CVE-2019-8351No exploit | Heimdal Thor Agent 2.5.17x before 2.5.173 does not verify X.509 certificates from TLS servers, which allows remote attackers to spoof serverheimdalsecurity · thor · CWE-295 | Critical9.1 | — | 1.3% | Mar 21, 2019 |
36Monitor | CVE-2023-29487No exploit | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows attackers to cause heimdalsecurity · thor · CWE-1333 | Critical9.1 | — | 0.7% | Dec 20, 2023 |
31Monitor | CVE-2018-5349No exploit | A vulnerability has been found in Heimdal PRO v2.2.190, but it is most likely also present in Heimdal FREE and Heimdal CORP.heimdalsecurity · heimdal · CWE-732 | High7.8 | — | 0.4% | Mar 22, 2018 |
31Monitor | CVE-2022-24618No exploit | Heimdal.Wizard.exe installer in Heimdal Premium Security 2.5.395 and earlier has insecure permissions, which allows unprivileged local usersheimdalsecurity · heimdal premium security · CWE-281 | High7.8 | — | 0.3% | Mar 10, 2022 |
28Monitor | CVE-2018-5731No exploit | An issue was discovered in Heimdal PRO 2.2.190.heimdalsecurity · heimdal · CWE-20 | High7.0 | — | 0.4% | Mar 22, 2018 |
- CVE-2023-2948639Monitor
An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB access restrictions
CriticalCVSS 9.8No exploitEPSS 1%heimdalsecurity · thorDec 20, 2023
- CVE-2023-2948539Monitor
An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows attackers to bypass
CriticalCVSS 9.8No exploitEPSS 1%heimdalsecurity · thorDec 20, 2023
- CVE-2019-835136Monitor
Heimdal Thor Agent 2.5.17x before 2.5.173 does not verify X.509 certificates from TLS servers, which allows remote attackers to spoof server
CriticalCVSS 9.1No exploitEPSS 1%heimdalsecurity · thorMar 21, 2019
- CVE-2023-2948736Monitor
An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows attackers to cause
CriticalCVSS 9.1No exploitEPSS 1%heimdalsecurity · thorDec 20, 2023
- CVE-2018-534931Monitor
A vulnerability has been found in Heimdal PRO v2.2.190, but it is most likely also present in Heimdal FREE and Heimdal CORP.
HighCVSS 7.8No exploitEPSS 0%heimdalsecurity · heimdalMar 22, 2018
- CVE-2022-2461831Monitor
Heimdal.Wizard.exe installer in Heimdal Premium Security 2.5.395 and earlier has insecure permissions, which allows unprivileged local users
HighCVSS 7.8No exploitEPSS 0%heimdalsecurity · heimdal premium securityMar 10, 2022
- CVE-2018-573128Monitor
An issue was discovered in Heimdal PRO 2.2.190.
HighCVSS 7.0No exploitEPSS 0%heimdalsecurity · heimdalMar 22, 2018