snowsoftware kayıtları
snowsoftware üreticisine ait 12 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 1 · %8,3
- Silahlaştırılmış
- 1 · %8,3
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %25
- Yayından KEV’e ortanca
- 0 gün
Tekrar eden sınıflar
- CWE-347 Improper Verification of Cryptographic Signature2
- CWE-269 Improper Privilege Management1
- CWE-287 Improper Authentication1
- CWE-290 Authentication Bypass by Spoofing1
- CWE-428 Unquoted Search Path or Element1
- CWE-64 Windows Shortcut Following (.LNK)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
12 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
100Hemen | CVE-2021-44228Silahlaştırılmış | Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpointsapache · log4j · CWE-20 | Kritik10,0 | KEV | %100,0 | 10 Ara 2021 |
35İzleyin | CVE-2024-4129İstismar yok | Authentication bypass in Snow License Managersnow software ab · snow license manager · CWE-287 | Yüksek8,8 | — | %0,5 | 14 May 2024 |
31İzleyin | CVE-2021-27579İstismar yok | Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across ansnowsoftware · snow inventory agent | Yüksek7,8 | — | %0,5 | 23 Şub 2021 |
31İzleyin | CVE-2021-4106İstismar yok | Vulnerability in Snow Inventory Java Scannersnowsoftware · snow inventory java scanner · CWE-691 | Yüksek7,8 | — | %0,3 | 16 Şub 2022 |
31İzleyin | CVE-2022-0883İstismar yok | Windows Unquoted/Trusted Service Pathssnowsoftware · snow license manager · CWE-428 | Yüksek7,8 | — | %0,2 | 18 May 2022 |
28İzleyin | CVE-2023-3864İstismar yok | SQL injection vulnerability in Snow License Managersnowsoftware · snow license manager · CWE-89 | Yüksek7,2 | — | %0,6 | 11 Ağu 2023 |
24İzleyin | CVE-2021-41562İstismar yok | Deletion of arbitrary files vulnerability in Snow Agent for Windowssnowsoftware · snow inventory agent · CWE-64 | Orta6,1 | — | %0,3 | 3 Kas 2021 |
22İzleyin | CVE-2023-7169İstismar yok | Impersonate vendor signed Powershell scriptssnowsoftware · snow inventory agent · CWE-290 | Orta5,5 | — | %0,2 | 8 Şub 2024 |
22İzleyin | CVE-2024-1149İstismar yok | Improper validation of update packagessnowsoftware · snow inventory agent · CWE-347 | Orta5,5 | — | %0,1 | 8 Şub 2024 |
22İzleyin | CVE-2024-1150İstismar yok | Improper validation of update packagessnowsoftware · snow inventory agent · CWE-347 | Orta5,5 | — | %0,1 | 8 Şub 2024 |
19İzleyin | CVE-2023-3937İstismar yok | Cross site scripting vulnerabilities in Snow License Managersnowsoftware · snow license manager · CWE-79 | Orta4,8 | — | %0,3 | 11 Ağu 2023 |
17İzleyin | CVE-2023-2679İstismar yok | Data leakage in Adobe connector for SPE edition of SLMsnowsoftware · snow license manager · CWE-269 | Orta4,3 | — | %0,4 | 17 May 2023 |
- CVE-2021-44228100Hemen
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
KritikCVSS 10,0KEVSilahlaştırılmışEPSS %100apache · log4j10 Ara 2021
- CVE-2024-412935İzleyin
Authentication bypass in Snow License Manager
YüksekCVSS 8,8İstismar yokEPSS %0snow software ab · snow license manager14 May 2024
- CVE-2021-2757931İzleyin
Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across an
YüksekCVSS 7,8İstismar yokEPSS %0snowsoftware · snow inventory agent23 Şub 2021
- CVE-2021-410631İzleyin
Vulnerability in Snow Inventory Java Scanner
YüksekCVSS 7,8İstismar yokEPSS %0snowsoftware · snow inventory java scanner16 Şub 2022
- CVE-2022-088331İzleyin
Windows Unquoted/Trusted Service Paths
YüksekCVSS 7,8İstismar yokEPSS %0snowsoftware · snow license manager18 May 2022
- CVE-2023-386428İzleyin
SQL injection vulnerability in Snow License Manager
YüksekCVSS 7,2İstismar yokEPSS %1snowsoftware · snow license manager11 Ağu 2023
- CVE-2021-4156224İzleyin
Deletion of arbitrary files vulnerability in Snow Agent for Windows
OrtaCVSS 6,1İstismar yokEPSS %0snowsoftware · snow inventory agent3 Kas 2021
- CVE-2023-716922İzleyin
Impersonate vendor signed Powershell scripts
OrtaCVSS 5,5İstismar yokEPSS %0snowsoftware · snow inventory agent8 Şub 2024
- CVE-2024-114922İzleyin
Improper validation of update packages
OrtaCVSS 5,5İstismar yokEPSS %0snowsoftware · snow inventory agent8 Şub 2024
- CVE-2024-115022İzleyin
Improper validation of update packages
OrtaCVSS 5,5İstismar yokEPSS %0snowsoftware · snow inventory agent8 Şub 2024
- CVE-2023-393719İzleyin
Cross site scripting vulnerabilities in Snow License Manager
OrtaCVSS 4,8İstismar yokEPSS %0snowsoftware · snow license manager11 Ağu 2023
- CVE-2023-267917İzleyin
Data leakage in Adobe connector for SPE edition of SLM
OrtaCVSS 4,3İstismar yokEPSS %0snowsoftware · snow license manager17 May 2023