İçeriğe atla
Noroxi

versa-networks kayıtları

versa-networks üreticisine ait 24 yayımlanmış kayıt.

Tüm kayıtlar

24 kayıt
  • Versa Concerto Actuator Authentication Bypass Information Leak

    KritikCVSS 9,2KEVSilahlaştırılmışEPSS %82

    versa-networks · concerto21 May 2025

  • CVE-2024-39717
    59Planlayın

    The Versa Director GUI provides an option to customize the look and feel of the user interface.

    YüksekCVSS 7,2KEVSilahlaştırılmışEPSS %4

    versa-networks · versa director22 Ağu 2024

  • CVE-2025-34027
    54Planlayın

    Versa Concerto Authentication Bypass File Write Remote Code Execution

    KritikCVSS 10,0Kavram kanıtıEPSS %45

    versa-networks · concerto21 May 2025

  • CVE-2019-25029
    40Planlayın

    In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via

    KritikCVSS 9,8İstismar yokEPSS %2

    versa-networks · versa director26 May 2021

  • CVE-2024-42450
    40Planlayın

    The Versa Director uses PostgreSQL (Postgres) to store operational and configuration data.

    KritikCVSS 10,0İstismar yokEPSS %1

    versa-networks · versa director19 Kas 2024

  • CVE-2025-24288
    39İzleyin

    The Versa Director software exposes a number of services by default and allow attackers an easy foothold due to default credentials and mult

    KritikCVSS 9,8İstismar yokEPSS %0

    versa-networks · versa director18 Haz 2025

  • CVE-2018-16494
    36İzleyin

    In VOS and overly permissive "umask" may allow for authorized users of the server to gain unauthorized access through insecure file permissi

    YüksekCVSS 8,8İstismar yokEPSS %2

    versa-networks · versa operating system26 May 2021

  • CVE-2018-16495
    35İzleyin

    In VOS user session identifier (authentication token) is issued to the browser prior to authentication but is not changed after the user suc

    YüksekCVSS 8,8İstismar yokEPSS %1

    versa-networks · versa operating system26 May 2021

  • CVE-2025-23168
    35İzleyin

    The Versa Director SD-WAN orchestration platform implements Two-Factor Authentication (2FA) using One-Time Passcodes (OTP) delivered via ema

    YüksekCVSS 8,8İstismar yokEPSS %0

    versa-networks · versa director18 Haz 2025

  • CVE-2025-34025
    34İzleyin

    Versa Concerto Insecure Docker Mount Container Escape

    YüksekCVSS 8,6İstismar yokEPSS %1

    versa-networks · concerto21 May 2025

  • CVE-2025-34290
    34İzleyin

    Versa SASE Client for Windows < 7.9.5 Arbitrary Folder Deletion Leading to Local Privilege Escalation

    YüksekCVSS 8,5İstismar yokEPSS %0

    versa-networks · sase client20 Ara 2025

  • CVE-2018-16497
    31İzleyin

    In Versa Analytics, the cron jobs are used for scheduling tasks by executing commands at specific dates and times on the server.

    YüksekCVSS 7,8İstismar yokEPSS %0

    versa-networks · versa analytics26 May 2021

  • CVE-2025-23173
    30İzleyin

    The Versa Director SD-WAN orchestration platform provides direct web-based access to uCPE virtual machines through the Director GUI.

    YüksekCVSS 7,5İstismar yokEPSS %1

    versa-networks · versa director18 Haz 2025

  • CVE-2025-23172
    28İzleyin

    The Versa Director SD-WAN orchestration platform includes a Webhook feature for sending notifications to external HTTP endpoints.

    YüksekCVSS 7,2İstismar yokEPSS %1

    versa-networks · versa director18 Haz 2025

  • CVE-2025-23171
    28İzleyin

    The Versa Director SD-WAN orchestration platform provides an option to upload various types of files.

    YüksekCVSS 7,2İstismar yokEPSS %1

    versa-networks · versa director18 Haz 2025

  • CVE-2025-23170
    26İzleyin

    The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the Director shell via S

    OrtaCVSS 6,7İstismar yokEPSS %1

    versa-networks · versa director18 Haz 2025

  • CVE-2024-45229
    26İzleyin

    The Versa Director offers REST APIs for orchestration and management.

    OrtaCVSS 6,6İstismar yokEPSS %1

    versa-networks · versa director20 Eyl 2024

  • CVE-2021-39285
    24İzleyin

    A XSS vulnerability exists in Versa Director Release: 16.1R2 Build: S8.

    OrtaCVSS 6,1İstismar yokEPSS %1

    versa-networks · versa director7 Eyl 2021

  • CVE-2025-23169
    24İzleyin

    The Versa Director SD-WAN orchestration platform allows customization of the user interface, including the header, footer, and logo.

    OrtaCVSS 6,1İstismar yokEPSS %0

    versa-networks · versa director18 Haz 2025

  • CVE-2025-24291
    24İzleyin

    The Versa Director SD-WAN orchestration platform provides functionality to upload various types of files.

    OrtaCVSS 6,1İstismar yokEPSS %0

    versa-networks · versa director18 Haz 2025

  • CVE-2018-16499
    23İzleyin

    In VOS compromised, an attacker at network endpoints can possibly view communications between an unsuspecting user and the service using man

    OrtaCVSS 5,9İstismar yokEPSS %0

    versa-networks · versa operating system26 May 2021

  • CVE-2019-25030
    22İzleyin

    In Versa Director, Versa Analytics and VOS, Passwords are not hashed using an adaptive cryptographic hash function or key derivation functio

    OrtaCVSS 5,5İstismar yokEPSS %0

    versa-networks · versa analytics26 May 2021

  • CVE-2018-16498
    22İzleyin

    In Versa Director, the unencrypted backup files stored on the Versa deployment contain credentials stored within configuration files.

    OrtaCVSS 5,5İstismar yokEPSS %0

    versa-networks · versa director26 May 2021

  • CVE-2018-16496
    21İzleyin

    In Versa Director, the un-authentication request found.

    OrtaCVSS 5,3İstismar yokEPSS %1

    versa-networks · versa director26 May 2021