skyboxsecurity records
10 published records for vendor skyboxsecurity.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2015-9246No exploit | An issue was discovered in Skybox Platform before 7.5.201.skyboxsecurity · skybox platform · CWE-20 | Critical9.8 | — | 2.9% | Jan 12, 2018 |
39Monitor | CVE-2015-9249No exploit | An issue was discovered in Skybox Platform before 7.5.201.skyboxsecurity · skybox platform · CWE-89 | Critical9.8 | — | 1.1% | Jan 12, 2018 |
35Monitor | CVE-2014-2084Proof of concept | Skybox View Appliances with ISO 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, and 6.4.46-2.57 does not properly restrict access to theskyboxsecurity · skybox view appliance iso · CWE-264 | High8.5 | — | 4.4% | May 17, 2014 |
31Monitor | CVE-2015-9250No exploit | An issue was discovered in Skybox Platform before 7.5.201.skyboxsecurity · skybox platform · CWE-22 | High7.5 | — | 1.7% | Jan 12, 2018 |
31Monitor | CVE-2017-14773No exploit | Skybox Manager Client Application prior to 8.5.501 is prone to an elevation of privileges vulnerability during authentication of a valid useskyboxsecurity · skybox manager client application | High7.8 | — | 0.4% | Oct 2, 2017 |
22Monitor | CVE-2017-14770No exploit | Skybox Manager Client Application prior to 8.5.501 is prone to an information disclosure vulnerability of user password hashes.skyboxsecurity · skybox manager client application · CWE-200 | Medium5.5 | — | 0.4% | Oct 2, 2017 |
22Monitor | CVE-2017-14771No exploit | Skybox Manager Client Application prior to 8.5.501 is prone to an arbitrary file upload vulnerability due to insufficient input validation oskyboxsecurity · skybox manager client application · CWE-20 | Medium5.5 | — | 0.3% | Oct 2, 2017 |
21Monitor | CVE-2015-9248No exploit | An issue was discovered in Skybox Platform before 7.5.201.skyboxsecurity · skybox platform · CWE-79 | Medium5.4 | — | 0.5% | Jan 12, 2018 |
21Monitor | CVE-2015-9247No exploit | An issue was discovered in Skybox Platform before 7.5.401.skyboxsecurity · skybox platform · CWE-79 | Medium5.4 | — | 0.5% | Jan 12, 2018 |
13Monitor | CVE-2017-14772No exploit | Skybox Manager Client Application is prone to information disclosure via a username enumeration attack.skyboxsecurity · skybox manager client application · CWE-200 | Low3.3 | — | 0.3% | Oct 2, 2017 |
- CVE-2015-924640Plan
An issue was discovered in Skybox Platform before 7.5.201.
CriticalCVSS 9.8No exploitEPSS 3%skyboxsecurity · skybox platformJan 12, 2018
- CVE-2015-924939Monitor
An issue was discovered in Skybox Platform before 7.5.201.
CriticalCVSS 9.8No exploitEPSS 1%skyboxsecurity · skybox platformJan 12, 2018
- CVE-2014-208435Monitor
Skybox View Appliances with ISO 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, and 6.4.46-2.57 does not properly restrict access to the
HighCVSS 8.5Proof of conceptEPSS 4%skyboxsecurity · skybox view appliance isoMay 17, 2014
- CVE-2015-925031Monitor
An issue was discovered in Skybox Platform before 7.5.201.
HighCVSS 7.5No exploitEPSS 2%skyboxsecurity · skybox platformJan 12, 2018
- CVE-2017-1477331Monitor
Skybox Manager Client Application prior to 8.5.501 is prone to an elevation of privileges vulnerability during authentication of a valid use
HighCVSS 7.8No exploitEPSS 0%skyboxsecurity · skybox manager client applicationOct 2, 2017
- CVE-2017-1477022Monitor
Skybox Manager Client Application prior to 8.5.501 is prone to an information disclosure vulnerability of user password hashes.
MediumCVSS 5.5No exploitEPSS 0%skyboxsecurity · skybox manager client applicationOct 2, 2017
- CVE-2017-1477122Monitor
Skybox Manager Client Application prior to 8.5.501 is prone to an arbitrary file upload vulnerability due to insufficient input validation o
MediumCVSS 5.5No exploitEPSS 0%skyboxsecurity · skybox manager client applicationOct 2, 2017
- CVE-2015-924821Monitor
An issue was discovered in Skybox Platform before 7.5.201.
MediumCVSS 5.4No exploitEPSS 1%skyboxsecurity · skybox platformJan 12, 2018
- CVE-2015-924721Monitor
An issue was discovered in Skybox Platform before 7.5.401.
MediumCVSS 5.4No exploitEPSS 1%skyboxsecurity · skybox platformJan 12, 2018
- CVE-2017-1477213Monitor
Skybox Manager Client Application is prone to information disclosure via a username enumeration attack.
LowCVSS 3.3No exploitEPSS 0%skyboxsecurity · skybox manager client applicationOct 2, 2017