vsecurity records
5 published records for vendor vsecurity.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-310 Cryptographic Issues1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2009-4509No exploit | The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session cookies in (1) tandbergvsecurity · tandberg video communication server · CWE-94 | Critical10.0 | — | 4.5% | Apr 13, 2010 |
41Plan | CVE-2010-1356No exploit | Unspecified vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to execute arbitrary code viavsecurity · tandberg video communication server | Critical10.0 | — | 3.3% | Apr 13, 2010 |
35Monitor | CVE-2009-4510No exploit | The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier for remote attackervsecurity · tandberg video communication server · CWE-310 | High8.5 | — | 2.1% | Apr 13, 2010 |
18Monitor | CVE-2009-4511Proof of concept | Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Server (VCS) before X5.vsecurity · tandberg video communication server · CWE-200 | Medium4.0 | — | 5.5% | Apr 13, 2010 |
17Monitor | CVE-2010-1355No exploit | Cross-site scripting (XSS) vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to inject arbivsecurity · tandberg video communication server · CWE-79 | Medium4.3 | — | 0.9% | Apr 13, 2010 |
- CVE-2009-450941Plan
The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session cookies in (1) tandberg
CriticalCVSS 10.0No exploitEPSS 5%vsecurity · tandberg video communication serverApr 13, 2010
- CVE-2010-135641Plan
Unspecified vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to execute arbitrary code via
CriticalCVSS 10.0No exploitEPSS 3%vsecurity · tandberg video communication serverApr 13, 2010
- CVE-2009-451035Monitor
The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier for remote attacker
HighCVSS 8.5No exploitEPSS 2%vsecurity · tandberg video communication serverApr 13, 2010
- CVE-2009-451118Monitor
Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Server (VCS) before X5.
MediumCVSS 4.0Proof of conceptEPSS 5%vsecurity · tandberg video communication serverApr 13, 2010
- CVE-2010-135517Monitor
Cross-site scripting (XSS) vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to inject arbi
MediumCVSS 4.3No exploitEPSS 1%vsecurity · tandberg video communication serverApr 13, 2010