riverbed kayıtları
riverbed üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation6
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-521 Weak Password Requirements2
- CWE-284 Improper Access Control1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-522 Insufficiently Protected Credentials1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2021-42786İstismar yok | Remote Code Execution at AgentControllerServletriverbed · steelcentral appinternals dynamic sampling agent · CWE-20 | Kritik9,8 | — | %2,1 | 10 Mar 2022 |
39İzleyin | CVE-2021-42853İstismar yok | Directory Traversal Delete/Read at AgentDiagnosticServletriverbed · steelcentral appinternals dynamic sampling agent · CWE-20 | Kritik9,8 | — | %1,6 | 10 Mar 2022 |
39İzleyin | CVE-2021-42854İstismar yok | Directory Traversal Read/Write/Delete at PluginServletriverbed · steelcentral appinternals dynamic sampling agent · CWE-20 | Kritik9,8 | — | %1,6 | 10 Mar 2022 |
39İzleyin | CVE-2021-42787İstismar yok | Directory Traversal Write/Delete/Partial Read at AgentConfigurationServletriverbed · steelcentral appinternals dynamic sampling agent · CWE-20 | Kritik9,8 | — | %1,3 | 10 Mar 2022 |
32İzleyin | CVE-2019-3800İstismar yok | CF CLI writes the client id and secret to config filepivotal · cloud foundry command line interface · CWE-522 | Yüksek7,8 | — | %2,1 | 5 Ağu 2019 |
31İzleyin | CVE-2020-15592İstismar yok | SteelCentral Aternity Agent before 11.0.0.120 on Windows allows Privilege Escalation via a crafted file.riverbed · steelcentral aternity agent · CWE-22 | Yüksek7,5 | — | %1,9 | 27 Tem 2020 |
31İzleyin | CVE-2020-15593İstismar yok | SteelCentral Aternity Agent 11.0.0.120 on Windows mishandles IPC.riverbed · steelcentral aternity agent | Yüksek7,8 | — | %0,4 | 27 Tem 2020 |
31İzleyin | CVE-2021-42855İstismar yok | Local privilege escalation due to misconfigured write permission on .debug_command.config fileriverbed · steelcentral appinternals dynamic sampling agent · CWE-284 | Yüksek7,8 | — | %0,2 | 10 Mar 2022 |
27İzleyin | CVE-2017-7693İstismar yok | Directory traversal vulnerability in viewer_script.jsp in Riverbed OPNET App Response Xpert (ARX) version 9.6.1 allows remote authenticated riverbed · opnet app response xpert · CWE-22 | Orta6,5 | — | %3,9 | 26 Ağu 2017 |
27İzleyin | CVE-2021-43271İstismar yok | Riverbed AppResponse 11.8.0, 11.8.5, 11.8.5a, 11.9.0, 11.9.0a, 11.10.0, 11.11.0, 11.11.0a, 11.11.1, 11.11.1a, 11.11.5, and 11.11.5a (when coriverbed · appresponse · CWE-532 | Orta6,8 | — | %0,8 | 3 Haz 2022 |
27İzleyin | CVE-2017-7307İstismar yok | Riverbed RiOS before 9.0.1 does not properly restrict shell access in single-user mode, which makes it easier for physically proximate attacriverbed · rios · CWE-732 | Orta6,8 | — | %0,3 | 4 Nis 2017 |
25İzleyin | CVE-2017-7306İstismar yok | Riverbed RiOS through 9.6.0 has a weak default password for the secure vault, which makes it easier for physically proximate attackers to deriverbed · rios · CWE-521 | Orta6,4 | — | %0,4 | 4 Nis 2017 |
24İzleyin | CVE-2021-42856İstismar yok | Reflected Cross-site Scripting at DsaDataTestriverbed · steelcentral appinternals dynamic sampling agent · CWE-20 | Orta6,1 | — | %0,6 | 10 Mar 2022 |
21İzleyin | CVE-2021-42857İstismar yok | Directory Traversal Partial Write at AgentDaServletriverbed · steelcentral appinternals dynamic sampling agent · CWE-20 | Orta5,3 | — | %1,2 | 10 Mar 2022 |
18İzleyin | CVE-2017-5670İstismar yok | Riverbed RiOS through 9.6.0 deletes the secure vault with the rm program (not shred or srm), which makes it easier for physically proximate riverbed · rios · CWE-200 | Orta4,6 | — | %0,4 | 4 Nis 2017 |
18İzleyin | CVE-2017-7305İstismar yok | Riverbed RiOS through 9.6.0 does not require a bootloader password, which makes it easier for physically proximate attackers to defeat the sriverbed · rios · CWE-521 | Orta4,6 | — | %0,3 | 4 Nis 2017 |
17İzleyin | CVE-2014-5348İstismar yok | Cross-site scripting (XSS) vulnerability in apps/zxtm/locallog.cgi in Riverbed Stingray (aka SteelApp) Traffic Manager Virtual Appliance 9.6riverbed · steelapp traffic manager · CWE-79 | Orta4,3 | — | %1,4 | 19 Ağu 2014 |
- CVE-2021-4278640Planlayın
Remote Code Execution at AgentControllerServlet
KritikCVSS 9,8İstismar yokEPSS %2riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2021-4285339İzleyin
Directory Traversal Delete/Read at AgentDiagnosticServlet
KritikCVSS 9,8İstismar yokEPSS %2riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2021-4285439İzleyin
Directory Traversal Read/Write/Delete at PluginServlet
KritikCVSS 9,8İstismar yokEPSS %2riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2021-4278739İzleyin
Directory Traversal Write/Delete/Partial Read at AgentConfigurationServlet
KritikCVSS 9,8İstismar yokEPSS %1riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2019-380032İzleyin
CF CLI writes the client id and secret to config file
YüksekCVSS 7,8İstismar yokEPSS %2pivotal · cloud foundry command line interface5 Ağu 2019
- CVE-2020-1559231İzleyin
SteelCentral Aternity Agent before 11.0.0.120 on Windows allows Privilege Escalation via a crafted file.
YüksekCVSS 7,5İstismar yokEPSS %2riverbed · steelcentral aternity agent27 Tem 2020
- CVE-2020-1559331İzleyin
SteelCentral Aternity Agent 11.0.0.120 on Windows mishandles IPC.
YüksekCVSS 7,8İstismar yokEPSS %0riverbed · steelcentral aternity agent27 Tem 2020
- CVE-2021-4285531İzleyin
Local privilege escalation due to misconfigured write permission on .debug_command.config file
YüksekCVSS 7,8İstismar yokEPSS %0riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2017-769327İzleyin
Directory traversal vulnerability in viewer_script.jsp in Riverbed OPNET App Response Xpert (ARX) version 9.6.1 allows remote authenticated
OrtaCVSS 6,5İstismar yokEPSS %4riverbed · opnet app response xpert26 Ağu 2017
- CVE-2021-4327127İzleyin
Riverbed AppResponse 11.8.0, 11.8.5, 11.8.5a, 11.9.0, 11.9.0a, 11.10.0, 11.11.0, 11.11.0a, 11.11.1, 11.11.1a, 11.11.5, and 11.11.5a (when co
OrtaCVSS 6,8İstismar yokEPSS %1riverbed · appresponse3 Haz 2022
- CVE-2017-730727İzleyin
Riverbed RiOS before 9.0.1 does not properly restrict shell access in single-user mode, which makes it easier for physically proximate attac
OrtaCVSS 6,8İstismar yokEPSS %0riverbed · rios4 Nis 2017
- CVE-2017-730625İzleyin
Riverbed RiOS through 9.6.0 has a weak default password for the secure vault, which makes it easier for physically proximate attackers to de
OrtaCVSS 6,4İstismar yokEPSS %0riverbed · rios4 Nis 2017
- CVE-2021-4285624İzleyin
Reflected Cross-site Scripting at DsaDataTest
OrtaCVSS 6,1İstismar yokEPSS %1riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2021-4285721İzleyin
Directory Traversal Partial Write at AgentDaServlet
OrtaCVSS 5,3İstismar yokEPSS %1riverbed · steelcentral appinternals dynamic sampling agent10 Mar 2022
- CVE-2017-567018İzleyin
Riverbed RiOS through 9.6.0 deletes the secure vault with the rm program (not shred or srm), which makes it easier for physically proximate
OrtaCVSS 4,6İstismar yokEPSS %0riverbed · rios4 Nis 2017
- CVE-2017-730518İzleyin
Riverbed RiOS through 9.6.0 does not require a bootloader password, which makes it easier for physically proximate attackers to defeat the s
OrtaCVSS 4,6İstismar yokEPSS %0riverbed · rios4 Nis 2017
- CVE-2014-534817İzleyin
Cross-site scripting (XSS) vulnerability in apps/zxtm/locallog.cgi in Riverbed Stingray (aka SteelApp) Traffic Manager Virtual Appliance 9.6
OrtaCVSS 4,3İstismar yokEPSS %1riverbed · steelapp traffic manager19 Ağu 2014