Записи vsecurity
5 опубликованных записей вендора vsecurity.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-310 Cryptographic Issues1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2009-4509Эксплойта нет | The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session cookies in (1) tandbergvsecurity · tandberg video communication server · CWE-94 | Критическая10,0 | — | 4,5 % | 13 апр. 2010 г. |
41В плане | CVE-2010-1356Эксплойта нет | Unspecified vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to execute arbitrary code viavsecurity · tandberg video communication server | Критическая10,0 | — | 3,3 % | 13 апр. 2010 г. |
35Наблюдать | CVE-2009-4510Эксплойта нет | The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier for remote attackervsecurity · tandberg video communication server · CWE-310 | Высокая8,5 | — | 2,1 % | 13 апр. 2010 г. |
18Наблюдать | CVE-2009-4511Proof of concept | Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Server (VCS) before X5.vsecurity · tandberg video communication server · CWE-200 | Средняя4,0 | — | 5,5 % | 13 апр. 2010 г. |
17Наблюдать | CVE-2010-1355Эксплойта нет | Cross-site scripting (XSS) vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to inject arbivsecurity · tandberg video communication server · CWE-79 | Средняя4,3 | — | 0,9 % | 13 апр. 2010 г. |
- CVE-2009-450941В плане
The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session cookies in (1) tandberg
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %vsecurity · tandberg video communication server13 апр. 2010 г.
- CVE-2010-135641В плане
Unspecified vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to execute arbitrary code via
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %vsecurity · tandberg video communication server13 апр. 2010 г.
- CVE-2009-451035Наблюдать
The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier for remote attacker
ВысокаяCVSS 8,5Эксплойта нетEPSS 2 %vsecurity · tandberg video communication server13 апр. 2010 г.
- CVE-2009-451118Наблюдать
Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Server (VCS) before X5.
СредняяCVSS 4,0Proof of conceptEPSS 5 %vsecurity · tandberg video communication server13 апр. 2010 г.
- CVE-2010-135517Наблюдать
Cross-site scripting (XSS) vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to inject arbi
СредняяCVSS 4,3Эксплойта нетEPSS 1 %vsecurity · tandberg video communication server13 апр. 2010 г.