Skip to content
Noroxi

tableau records

22 published records for vendor tableau.

All records

22 records
  • Tableau Server installations configured with Site-Specific SAML that allows the APIs to be used by unauthenticated users.

    CriticalCVSS 9.8No exploitEPSS 2%

    tableau · tableau serverNov 23, 2020

  • Tableau discovered a path traversal vulnerability affecting Tableau Server Administration Agent’s internal file transfer service that could

    CriticalCVSS 9.8No exploitEPSS 2%

    tableau · tableau serverOct 17, 2022

  • Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Salesforce Tableau Server, Tableau Desktop on Windows, Linux

    CriticalCVSS 9.3No exploitEPSS 0%

    tableau · tableau serverAug 22, 2025

  • Numerous Tableau products are vulnerable to XXE via a malicious workbook, extension, or data source, leading to information disclosure or a

    HighCVSS 8.1Proof of conceptEPSS 14%

    tableau · tableau serverAug 26, 2019

  • Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Server on Windows, Linux

    HighCVSS 8.5No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Extensible Protocol Service mo

    HighCVSS 8.5No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Improper Input Validation vulnerability in Salesforce Tableau Server on Windows, Linux (tabdoc api - create-data-source-from-file-upload mod

    HighCVSS 8.5No exploitEPSS 0%

    tableau · tableau serverAug 22, 2025

  • Authorization Bypass Through User-Controlled Key vulnerability in Salesforce Tableau Server on Windows, Linux (set-initial-sql tabdoc comman

    HighCVSS 8.1No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Authorization Bypass Through User-Controlled Key vulnerability in Salesforce Tableau Server on Windows, Linux (validate-initial-sql api modu

    HighCVSS 8.1No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Data Source modules) allows Resource L

    HighCVSS 8.2No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux (Amazon S3 Connector modules) allows Resourc

    HighCVSS 8.2No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Authorization Bypass Through User-Controlled Key vulnerability in Salesforce Tableau Server on Windows, Linux (tab-doc api modules) allows I

    HighCVSS 8.0No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025

  • Tableau Server 10.3 through 2019.4 on Windows and Linux allows XSS via the embeddedAuthRedirect page.

    MediumCVSS 6.1No exploitEPSS 22%

    tableau · tableau serverDec 11, 2019

  • CVE-2020-6938
    30Monitor

    A sensitive information disclosure vulnerability in Tableau Server 10.5, 2018.x, 2019.x, 2020.x released before June 26, 2020, could allow a

    HighCVSS 7.5No exploitEPSS 1%

    tableau · tableau serverJul 8, 2020

  • Server Side Request Forgery vulnerability in Tableau Server

    HighCVSS 7.7No exploitEPSS 1%

    tableau · tableau serverFeb 11, 2025

  • Sensitive Data Exposure in Tableau Server

    HighCVSS 7.5No exploitEPSS 0%

    tableau · tableau serverFeb 11, 2025

  • Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-connection-no-undo m

    HighCVSS 7.3No exploitEPSS 0%

    tableau · tableau serverAug 22, 2025

  • Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Editor modules) allows Ab

    HighCVSS 7.3No exploitEPSS 0%

    tableau · tableau serverAug 22, 2025

  • Tableau is aware of a broken access control vulnerability present in Tableau Server affecting Tableau Server customers using Local Identity

    HighCVSS 7.2No exploitEPSS 1%

    tableau · tableau serverMay 25, 2022

  • Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Server on Windows, Linux

    MediumCVSS 6.5No exploitEPSS 0%

    tableau · tableau serverAug 22, 2025

  • CVE-2021-1629
    24Monitor

    Tableau Server fails to validate certain URLs that are embedded in emails sent to Tableau Server users.

    MediumCVSS 6.1No exploitEPSS 1%

    tableau · tableau serverMar 26, 2021

  • Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux (EPS Server modules) allows Resource Locatio

    MediumCVSS 5.3No exploitEPSS 0%

    tableau · tableau serverJul 25, 2025