Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
silver vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-3315
The server in TIBCO Silver Mobile 1.1.0 does not properly verify access to the administrator role before executing a command, which allows authenticated users to gain privileges via unspecified vectors.
Tibco Silver Mobile 1.1.0
8.8
CVSSv3
CVE-2020-12146
In Silver Peak Unity Orchestrator versions before 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server using the/debugFiles REST API.
Silver-peak Unity Orchestrator
8.8
CVSSv3
CVE-2020-12147
In Silver Peak Unity Orchestrator versions before 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution REST API, which had been used for internal testing.
Silver-peak Unity Orchestrator
8.8
CVSSv3
CVE-2019-16099
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows CSRF via JSON data to a .swf file.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
7.5
CVSSv3
CVE-2019-16100
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows remote malicious users to trigger a web-interface outage via slow client-side HTTP traffic from a single source.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
9.8
CVSSv3
CVE-2019-16102
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x has an SNMP service with a public value for rocommunity and trapcommunity.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
7.2
CVSSv3
CVE-2019-16103
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows privilege escalation (by administrators) from the menu to a root Bash OS shell via the spsshell feature.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
4.9
CVSSv3
CVE-2019-16105
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows ..%2f directory traversal via a rest/json/configdb/download/ URI.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
5.3
CVSSv3
CVE-2019-16101
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows remote malicious users to obtain potentially sensitive stack traces by sending incorrect JSON data to the REST API, such as the rest/json/banners URI.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
6.1
CVSSv3
CVE-2019-16104
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x has reflected XSS via the rest/json/configdb/download/ PATH_INFO.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »