datto kayıtları
datto üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor3
- CWE-20 Improper Input Validation1
- CWE-798 Use of Hard-coded Credentials1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2015-2081İstismar yok | Datto ALTO and SIRIS devices allow Remote Code Execution via unauthenticated requests to PHP scripts.datto · alto 3 firmware · CWE-20 | Kritik9,8 | — | %2,8 | 20 Şub 2018 |
39İzleyin | CVE-2015-9254İstismar yok | Datto ALTO and SIRIS devices have a default VNC password.datto · alto 3 firmware · CWE-798 | Kritik9,8 | — | %1,1 | 20 Şub 2018 |
32İzleyin | CVE-2017-16674İstismar yok | Datto Windows Agent allows unauthenticated remote command execution via a modified command in conjunction with CVE-2017-16673 exploitation, datto · windows agent | Yüksek8,0 | — | %0,7 | 9 Kas 2017 |
21İzleyin | CVE-2015-9255İstismar yok | Datto ALTO and SIRIS devices allow remote attackers to obtain sensitive information about data, software versions, configuration, and virtuadatto · alto 3 firmware · CWE-200 | Orta5,3 | — | %1,0 | 20 Şub 2018 |
21İzleyin | CVE-2015-9256İstismar yok | Datto ALTO and SIRIS devices allow remote attackers to obtain sensitive information via access to device/VM restore mount points, because thdatto · alto 3 firmware · CWE-200 | Orta5,3 | — | %1,0 | 20 Şub 2018 |
21İzleyin | CVE-2017-16673İstismar yok | Datto Backup Agent 1.0.6.0 and earlier does not authenticate incoming connections.datto · backup agent · CWE-200 | Orta5,3 | — | %0,4 | 9 Kas 2017 |
- CVE-2015-208140Planlayın
Datto ALTO and SIRIS devices allow Remote Code Execution via unauthenticated requests to PHP scripts.
KritikCVSS 9,8İstismar yokEPSS %3datto · alto 3 firmware20 Şub 2018
- CVE-2015-925439İzleyin
Datto ALTO and SIRIS devices have a default VNC password.
KritikCVSS 9,8İstismar yokEPSS %1datto · alto 3 firmware20 Şub 2018
- CVE-2017-1667432İzleyin
Datto Windows Agent allows unauthenticated remote command execution via a modified command in conjunction with CVE-2017-16673 exploitation,
YüksekCVSS 8,0İstismar yokEPSS %1datto · windows agent9 Kas 2017
- CVE-2015-925521İzleyin
Datto ALTO and SIRIS devices allow remote attackers to obtain sensitive information about data, software versions, configuration, and virtua
OrtaCVSS 5,3İstismar yokEPSS %1datto · alto 3 firmware20 Şub 2018
- CVE-2015-925621İzleyin
Datto ALTO and SIRIS devices allow remote attackers to obtain sensitive information via access to device/VM restore mount points, because th
OrtaCVSS 5,3İstismar yokEPSS %1datto · alto 3 firmware20 Şub 2018
- CVE-2017-1667321İzleyin
Datto Backup Agent 1.0.6.0 and earlier does not authenticate incoming connections.
OrtaCVSS 5,3İstismar yokEPSS %0datto · backup agent9 Kas 2017