İçeriğe atla
Noroxi

Tribe29 kayıtları

tribe29 üreticisine ait 18 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%61,1
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

18 kayıt
  • CVE-2021-40905
    36İzleyin

    The web management console of CheckMK Enterprise Edition (versions 1.5.0 to 2.0.0p9) does not properly sanitise the uploading of ".mkp" file

    YüksekCVSS 8,8Kavram kanıtıEPSS %3

    checkmk · checkmk25 Mar 2022

  • CVE-2023-31209
    35İzleyin

    Command injection via active checks and REST API

    YüksekCVSS 8,8İstismar yokEPSS %1

    checkmk · checkmk10 Ağu 2023

  • CVE-2023-31208
    35İzleyin

    Livestatus command injection in RestAPI

    YüksekCVSS 8,8İstismar yokEPSS %1

    checkmk · checkmk17 May 2023

  • CVE-2023-22294
    35İzleyin

    Privilege escalation in Checkmk Appliance

    YüksekCVSS 8,8İstismar yokEPSS %1

    tribe29 · checkmk18 Nis 2023

  • CVE-2023-0284
    32İzleyin

    Improper validation of LDAP user IDs

    YüksekCVSS 8,1İstismar yokEPSS %1

    checkmk · checkmk26 Oca 2023

  • CVE-2023-6735
    31İzleyin

    Privilege escalation in mk_tsm

    YüksekCVSS 7,8İstismar yokEPSS %0

    checkmk · checkmk12 Oca 2024

  • CVE-2022-33912
    31İzleyin

    A permission issue affects users that deployed the shipped version of the Checkmk Debian package.

    YüksekCVSS 7,8İstismar yokEPSS %0

    checkmk · checkmk17 Haz 2022

  • CVE-2023-6740
    31İzleyin

    Privilege escalation in jar_signature

    YüksekCVSS 7,8İstismar yokEPSS %0

    checkmk · checkmk12 Oca 2024

  • CVE-2023-22318
    30İzleyin

    Denial of service against webconf

    YüksekCVSS 7,5İstismar yokEPSS %1

    tribe29 · checkmk appliance firmware15 May 2023

  • CVE-2023-31211
    26İzleyin

    Disabled automation users could still authenticate

    OrtaCVSS 6,5İstismar yokEPSS %1

    checkmk · checkmk12 Oca 2024

  • CVE-2022-31258
    26İzleyin

    In Checkmk before 1.6.0p29, 2.x before 2.0.0p25, and 2.1.x before 2.1.0b10, a site user can escalate to root by editing an OMD hook symlink.

    OrtaCVSS 6,7İstismar yokEPSS %0

    checkmk · checkmk20 May 2022

  • CVE-2021-40906
    24İzleyin

    CheckMK Raw Edition software (versions 1.5.0 to 1.6.0) does not sanitise the input of a web service parameter that is in an unauthenticated

    OrtaCVSS 6,1Kavram kanıtıEPSS %1

    checkmk · checkmk25 Mar 2022

  • CVE-2023-22309
    24İzleyin

    Reflected Cross Site Scripting (XSS)

    OrtaCVSS 6,1İstismar yokEPSS %0

    tribe29 · checkmk appliance firmware20 Nis 2023

  • CVE-2023-6287
    22İzleyin

    Backup password in GET parameter

    OrtaCVSS 5,5İstismar yokEPSS %0

    tribe29 · checkmk appliance firmware27 Kas 2023

  • CVE-2023-22307
    22İzleyin

    Site-Passwords in GET parameters

    OrtaCVSS 5,5İstismar yokEPSS %0

    tribe29 · checkmk appliance firmware18 Nis 2023

  • CVE-2023-1768
    21İzleyin

    Symmetric agent data encryption fails silently

    OrtaCVSS 5,3İstismar yokEPSS %1

    checkmk · checkmk4 Nis 2023

  • CVE-2023-22288
    21İzleyin

    Email HTML Injection

    OrtaCVSS 5,4İstismar yokEPSS %0

    checkmk · checkmk20 Mar 2023

  • CVE-2023-22348
    17İzleyin

    Reading host_configs does not honour contact groups

    OrtaCVSS 4,3İstismar yokEPSS %1

    checkmk · checkmk17 May 2023