Skip to content
Noroxi

neuvector records

2 published records for vendor neuvector.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

  1. 19
  2. 24

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

2 records
  • NeuVector 3.1 when configured to allow authentication via Active Directory, does not enforce non-empty passwords which allows an attacker wi

    CriticalCVSS 9.8No exploitEPSS 1%

    neuvector · neuvectorDec 20, 2019

  • JWT token compromise can allow malicious actions including Remote Code Execution (RCE)

    CriticalCVSS 9.4No exploitEPSS 1%

    suse · neuvectorOct 16, 2024