TSplus records
5 published records for vendor tsplus.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-276 Incorrect Default Permissions3
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-522 Insufficiently Protected Credentials1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2023-31067Proof of concept | An issue was discovered in TSplus Remote Access through 16.0.2.14.tsplus · tsplus remote access · CWE-276 | Critical9.8 | — | 5.5% | Sep 11, 2023 |
41Plan | CVE-2023-31068Proof of concept | An issue was discovered in TSplus Remote Access through 16.0.2.14.tsplus · tsplus remote work · CWE-276 | Critical9.8 | — | 5.4% | Sep 11, 2023 |
40Plan | CVE-2023-31069Proof of concept | An issue was discovered in TSplus Remote Access through 16.0.2.14.tsplus · tsplus remote work · CWE-312 | Critical9.8 | — | 3.7% | Sep 11, 2023 |
39Monitor | CVE-2023-27132No exploit | TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web portsplus · tsplus remote work · CWE-522 | Critical9.8 | — | 0.9% | Oct 17, 2023 |
39Monitor | CVE-2023-27133No exploit | TSplus Remote Work 16.0.0.0 has weak permissions for .exe, .js, and .html files under the %PROGRAMFILES(X86)%\TSplus-RemoteWork\Clients\www tsplus · tsplus remote work · CWE-276 | Critical9.8 | — | 0.8% | Oct 17, 2023 |
- CVE-2023-3106741Plan
An issue was discovered in TSplus Remote Access through 16.0.2.14.
CriticalCVSS 9.8Proof of conceptEPSS 5%tsplus · tsplus remote accessSep 11, 2023
- CVE-2023-3106841Plan
An issue was discovered in TSplus Remote Access through 16.0.2.14.
CriticalCVSS 9.8Proof of conceptEPSS 5%tsplus · tsplus remote workSep 11, 2023
- CVE-2023-3106940Plan
An issue was discovered in TSplus Remote Access through 16.0.2.14.
CriticalCVSS 9.8Proof of conceptEPSS 4%tsplus · tsplus remote workSep 11, 2023
- CVE-2023-2713239Monitor
TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web por
CriticalCVSS 9.8No exploitEPSS 1%tsplus · tsplus remote workOct 17, 2023
- CVE-2023-2713339Monitor
TSplus Remote Work 16.0.0.0 has weak permissions for .exe, .js, and .html files under the %PROGRAMFILES(X86)%\TSplus-RemoteWork\Clients\www
CriticalCVSS 9.8No exploitEPSS 1%tsplus · tsplus remote workOct 17, 2023