İçeriğe atla
Noroxi

ironmansoftware kayıtları

ironmansoftware üreticisine ait 9 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

9 kayıt
  • CVE-2023-49213
    36İzleyin

    The API endpoints in Ironman PowerShell Universal 3.0.0 through 4.2.0 allow remote attackers to execute arbitrary commands via crafted HTTP

    YüksekCVSS 8,8İstismar yokEPSS %2

    ironmansoftware · powershell universal23 Kas 2023

  • CVE-2022-45183
    35İzleyin

    Escalation of privileges in the Web Server in Ironman Software PowerShell Universal 2.x and 3.x allows an attacker with a valid app token to

    YüksekCVSS 8,8İstismar yokEPSS %1

    ironmansoftware · powershell universal14 Kas 2022

  • CVE-2024-50616
    35İzleyin

    Ironman PowerShell Universal 5.x before 5.0.12 allows an authenticated attacker to elevate their privileges and view job information.

    YüksekCVSS 8,8İstismar yokEPSS %0

    27 Eki 2024

  • CVE-2026-4064
    33İzleyin

    Missing authorization checks on multiple gRPC service endpoints in PowerShell Universal before 2026.1.4 allows an authenticated user with an

    YüksekCVSS 8,3İstismar yokEPSS %0

    ironmansoftware · powershell universal17 Mar 2026

  • CVE-2022-45184
    29İzleyin

    The Web Server in Ironman Software PowerShell Universal v3.x and v2.x allows for directory traversal outside of the configuration directory,

    YüksekCVSS 7,2İstismar yokEPSS %2

    ironmansoftware · powershell universal14 Kas 2022

  • CVE-2026-3277
    26İzleyin

    The OpenID Connect (OIDC) authentication configuration in PowerShell Universal before 2026.1.3 stores the OIDC client secret in cleartext i

    OrtaCVSS 6,5İstismar yokEPSS %0

    ironmansoftware · powershell universal27 Şub 2026

  • CVE-2026-0618
    24İzleyin

    Cross-site Scripting vulnerability in Devolutions PowerShell Universal.This issue affects Powershell Universal: before 4.5.6, before 5.6.13.

    OrtaCVSS 6,1İstismar yokEPSS %0

    ironmansoftware · powershell universal7 Oca 2026

  • CVE-2026-3563
    22İzleyin

    Improper input validation in the apps and endpoints configuration in PowerShell Universal before 2026.1.4 allows an authenticated user with

    OrtaCVSS 5,5İstismar yokEPSS %0

    ironmansoftware · powershell universal17 Mar 2026

  • CVE-2026-8694
    21İzleyin

    Improper access control on the API documentation endpoint in PowerShell Universal

    OrtaCVSS 5,3İstismar yokEPSS %0

    ironmansoftware · powershell universal12 Haz 2026