Записи skyhighsecurity
4 опубликованных записей вендора skyhighsecurity.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-256 Plaintext Storage of a Password1
- CWE-290 Authentication Bypass by Spoofing1
- CWE-670 Always-Incorrect Control Flow Implementation1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2022-2310Эксплойта нет | Skyhigh SWG Authentication bypass vulnerabilityskyhighsecurity · secure web gateway · CWE-290 | Критическая9,8 | — | 1,2 % | 27 июл. 2022 г. |
26Наблюдать | CVE-2023-4400Эксплойта нет | A password management vulnerability in Skyhigh Secure Web Gateway (SWG) in main releases 11.x prior to 11.2.14, 10.x prior to 10.2.25 and cskyhighsecurity · secure web gateway · CWE-256 | Средняя6,5 | — | 0,4 % | 13 сент. 2023 г. |
22Наблюдать | CVE-2024-0313Эксплойта нет | A malicious insider exploiting this vulnerability can circumvent existing security controls put in place by the organization.skyhigh · skyhigh client proxy · CWE-670 | Средняя5,5 | — | 0,2 % | 14 мар. 2024 г. |
21Наблюдать | CVE-2024-6398Эксплойта нет | An information disclosure vulnerability in SWG in versions 12.x prior to 12.2.10 and 11.x prior to 11.2.24 allows information stored in a cuskyhighsecurity · secure web gateway · CWE-200 | Средняя5,3 | — | 0,3 % | 15 июл. 2024 г. |
- CVE-2022-231039Наблюдать
Skyhigh SWG Authentication bypass vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %skyhighsecurity · secure web gateway27 июл. 2022 г.
- CVE-2023-440026Наблюдать
A password management vulnerability in Skyhigh Secure Web Gateway (SWG) in main releases 11.x prior to 11.2.14, 10.x prior to 10.2.25 and c
СредняяCVSS 6,5Эксплойта нетEPSS 0 %skyhighsecurity · secure web gateway13 сент. 2023 г.
- CVE-2024-031322Наблюдать
A malicious insider exploiting this vulnerability can circumvent existing security controls put in place by the organization.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %skyhigh · skyhigh client proxy14 мар. 2024 г.
- CVE-2024-639821Наблюдать
An information disclosure vulnerability in SWG in versions 12.x prior to 12.2.10 and 11.x prior to 11.2.24 allows information stored in a cu
СредняяCVSS 5,3Эксплойта нетEPSS 0 %skyhighsecurity · secure web gateway15 июл. 2024 г.