Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
unisys stealth vulnerabilities and exploits
(subscribe to this query)
6.9
CVSSv2
CVE-2019-18193
In Unisys Stealth (core) 3.4.108.0, 3.4.209.x, 4.0.027.x and 4.0.114, key material inadvertently logged under certain conditions. Fixed included in 3.4.109, 4.0.027.13, 4.0.125 and 5.0.013.0.
Unisys Stealth 3.4.108.0
Unisys Stealth 3.4.209.0
Unisys Stealth 4.0.027.0
Unisys Stealth 4.0.114
2.1
CVSSv2
CVE-2020-24620
Unisys Stealth(core) prior to 4.0.134 stores passwords in a recoverable format. Therefore, a search of Enterprise Manager can potentially reveal credentials.
Unisys Stealth
4.6
CVSSv2
CVE-2018-6592
Unisys Stealth 3.3 Windows endpoints prior to 3.3.016.1 allow local users to gain access to Stealth-enabled devices by leveraging improper cleanup of memory used for negotiation key storage.
Unisys Stealth
7.5
CVSSv2
CVE-2020-12053
In Unisys Stealth 3.4.x, 4.x and 5.x prior to 5.0.026, if certificate-based authorization is used without HTTPS, an endpoint could be authorized without a private key.
Unisys Stealth
2.1
CVSSv2
CVE-2021-3141
In Unisys Stealth (core) prior to 6.0.025.0, the Keycloak password is stored in a recoverable format that might be accessible by a local attacker, who could gain access to the Management Server and change the Stealth configuration.
Unisys Stealth
4.6
CVSSv2
CVE-2021-35056
Unisys Stealth 5.1 prior to 5.1.025.0 and 6.0 prior to 6.0.055.0 has an unquoted Windows search path for a scheduled task. An unintended executable might run.
Unisys Stealth
1.9
CVSSv2
CVE-2018-7534
In Stealth Authorization Server prior to 3.3.017.0 in Unisys Stealth Solution, an encryption key may be left in memory.
Unisys Stealth Authorization Server
5
CVSSv2
CVE-2018-8049
The Stealth endpoint in Unisys Stealth SVG 2.8.x, 3.0.x prior to 3.0.1999, 3.1.x, 3.2.x prior to 3.2.030, and 3.3.x prior to 3.3.016, when running on Linux and AIX, allows remote malicious users to cause a denial of service (crash) via crafted packets.
Unisys Stealth Svg
Unisys Stealth Svg 2.8
NA
CVE-2024-23758
An issue discovered in Unisys Stealth 5.3.062.0 allows malicious users to view sensitive information via the Enterprise ManagementInstaller_msi.log file.
4
CVSSv2
CVE-2021-28492
Unisys Stealth (core) 5.x prior to 5.0.048.0, 5.1.x prior to 5.1.017.0, and 6.x prior to 6.0.037.0 stores passwords in a recoverable format.
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
race condition
CVE-2024-4249
CVE-2024-4244
CVE-2023-20198
TCP
CVE-2022-48648
CVE-2022-48636
CVE-2024-21345
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started