Перейти к содержимому
Noroxi

Записи HYPR

15 опубликованных записей вендора hypr.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
73,3 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Охват bug bounty

Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.

Все записи

15 записей
  • CVE-2023-0834
    39Наблюдать

    Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on MacOS allows Privilege Escalation.This issue

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    hypr · workforce access28 апр. 2023 г.

  • CVE-2022-2193
    35Наблюдать

    Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attackers to add a FIDO2 aut

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    hypr · hypr server19 июл. 2022 г.

  • CVE-2022-2192
    35Наблюдать

    Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recovery token to elevate

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    hypr · hypr server19 июл. 2022 г.

  • CVE-2023-1477
    35Наблюдать

    Improper Authentication vulnerability in HYPR Keycloak Authenticator Extension allows Authentication Abuse.This issue affects HYPR Keycloak

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    hypr · keycloak authenticator28 апр. 2023 г.

  • CVE-2023-1837
    35Наблюдать

    Missing Authentication for critical function vulnerability in HYPR Server allows Authentication Bypass when using Legacy APIs.This issue aff

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    hypr · hypr server23 мая 2023 г.

  • CVE-2022-3258
    35Наблюдать

    Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on Windows allows Authentication Abuse.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    hypr · workforce access3 нояб. 2022 г.

  • CVE-2022-1984
    31Наблюдать

    This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Access (WFA) before versi

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    hypr · workforce access19 июл. 2022 г.

  • CVE-2023-6336
    31Наблюдать

    Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows User-Controlled Filena

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    hypr · workforce access16 янв. 2024 г.

  • CVE-2023-6335
    31Наблюдать

    Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on Windows allows User-Controlled File

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    hypr · workforce access16 янв. 2024 г.

  • CVE-2023-6334
    31Наблюдать

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HYPR Workforce Access on Windows allows Overflow Bu

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    hypr · workforce access16 янв. 2024 г.

  • CVE-2024-8273
    28Наблюдать

    Authentication Bypass by Spoofing vulnerability in HYPR Server allows Identity Spoofing.This issue affects Server: before 10.1.

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    hypr · hypr server11 дек. 2025 г.

  • CVE-2024-0068
    28Наблюдать

    Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Workforce Access on MacOS allows File Manipulation.This

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    hypr · workforce access29 февр. 2024 г.

  • CVE-2026-2414
    22Наблюдать

    Authorization bypass through User-Controlled key vulnerability in HYPR Server allows Privilege Escalation.This issue affects Server: from 9.

    СредняяCVSS 5,6Эксплойта нетEPSS 0 %

    hypr · hypr25 мар. 2026 г.

  • CVE-2023-5097
    22Наблюдать

    Improper Input Validation vulnerability in HYPR Workforce Access on Windows allows Path Traversal.This issue affects Workforce Access: befor

    СредняяCVSS 5,5Эксплойта нетEPSS 0 %

    hypr · workforce access16 янв. 2024 г.

  • CVE-2024-1721
    22Наблюдать

    Improper Verification of Cryptographic Signature vulnerability in HYPR Passwordless on Windows allows Malicious Software Update.This issue a

    СредняяCVSS 5,6Эксплойта нетEPSS 0 %

    hypr · passwordless21 мая 2024 г.