Skip to content
Noroxi

riverbed records

17 published records for vendor riverbed.

All records

17 records
  • Remote Code Execution at AgentControllerServlet

    CriticalCVSS 9.8No exploitEPSS 2%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • Directory Traversal Delete/Read at AgentDiagnosticServlet

    CriticalCVSS 9.8No exploitEPSS 2%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • Directory Traversal Read/Write/Delete at PluginServlet

    CriticalCVSS 9.8No exploitEPSS 2%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • Directory Traversal Write/Delete/Partial Read at AgentConfigurationServlet

    CriticalCVSS 9.8No exploitEPSS 1%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • CVE-2019-3800
    32Monitor

    CF CLI writes the client id and secret to config file

    HighCVSS 7.8No exploitEPSS 2%

    pivotal · cloud foundry command line interfaceAug 5, 2019

  • SteelCentral Aternity Agent before 11.0.0.120 on Windows allows Privilege Escalation via a crafted file.

    HighCVSS 7.5No exploitEPSS 2%

    riverbed · steelcentral aternity agentJul 27, 2020

  • SteelCentral Aternity Agent 11.0.0.120 on Windows mishandles IPC.

    HighCVSS 7.8No exploitEPSS 0%

    riverbed · steelcentral aternity agentJul 27, 2020

  • Local privilege escalation due to misconfigured write permission on .debug_command.config file

    HighCVSS 7.8No exploitEPSS 0%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • CVE-2017-7693
    27Monitor

    Directory traversal vulnerability in viewer_script.jsp in Riverbed OPNET App Response Xpert (ARX) version 9.6.1 allows remote authenticated

    MediumCVSS 6.5No exploitEPSS 4%

    riverbed · opnet app response xpertAug 26, 2017

  • Riverbed AppResponse 11.8.0, 11.8.5, 11.8.5a, 11.9.0, 11.9.0a, 11.10.0, 11.11.0, 11.11.0a, 11.11.1, 11.11.1a, 11.11.5, and 11.11.5a (when co

    MediumCVSS 6.8No exploitEPSS 1%

    riverbed · appresponseJun 3, 2022

  • CVE-2017-7307
    27Monitor

    Riverbed RiOS before 9.0.1 does not properly restrict shell access in single-user mode, which makes it easier for physically proximate attac

    MediumCVSS 6.8No exploitEPSS 0%

    riverbed · riosApr 4, 2017

  • CVE-2017-7306
    25Monitor

    Riverbed RiOS through 9.6.0 has a weak default password for the secure vault, which makes it easier for physically proximate attackers to de

    MediumCVSS 6.4No exploitEPSS 0%

    riverbed · riosApr 4, 2017

  • Reflected Cross-site Scripting at DsaDataTest

    MediumCVSS 6.1No exploitEPSS 1%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • Directory Traversal Partial Write at AgentDaServlet

    MediumCVSS 5.3No exploitEPSS 1%

    riverbed · steelcentral appinternals dynamic sampling agentMar 10, 2022

  • CVE-2017-5670
    18Monitor

    Riverbed RiOS through 9.6.0 deletes the secure vault with the rm program (not shred or srm), which makes it easier for physically proximate

    MediumCVSS 4.6No exploitEPSS 0%

    riverbed · riosApr 4, 2017

  • CVE-2017-7305
    18Monitor

    Riverbed RiOS through 9.6.0 does not require a bootloader password, which makes it easier for physically proximate attackers to defeat the s

    MediumCVSS 4.6No exploitEPSS 0%

    riverbed · riosApr 4, 2017

  • CVE-2014-5348
    17Monitor

    Cross-site scripting (XSS) vulnerability in apps/zxtm/locallog.cgi in Riverbed Stingray (aka SteelApp) Traffic Manager Virtual Appliance 9.6

    MediumCVSS 4.3No exploitEPSS 1%

    riverbed · steelapp traffic managerAug 19, 2014