Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vpn client vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv2
CVE-2020-3436
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to upload arbitrary-sized files to specific folders on an affected device, which could ...
Cisco Firepower Threat Defense
Cisco Adaptive Security Appliance
Cisco Firepower Threat Defense 6.6.0
Cisco Adaptive Security Appliance Software
7.2
CVSSv2
CVE-2020-17365
Improper directory permissions in the Hotspot Shield VPN client software for Windows 10.3.0 and previous versions may allow an authorized user to potentially enable escalation of privilege via local access. The vulnerability allows a local user to corrupt system files: a local us...
Pango Hotspot Shield
5
CVSSv2
CVE-2020-15590
A vulnerability in the Private Internet Access (PIA) VPN Client for Linux 1.5 up to and including 2.3+ allows remote malicious users to bypass an intended VPN kill switch mechanism and read sensitive information via intercepting network traffic. Since 1.5, PIA has supported a &ld...
Privateinternetaccess Private Internet Access Vpn Client
2.1
CVSSv2
CVE-2020-3435
A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local malicious user to overwrite VPN profiles on an affected device. To exploit this vulnerability, the attacker would need to hav...
Cisco Anyconnect Secure Mobility Client
5
CVSSv2
CVE-2020-3452
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to conduct directory traversal attacks and read sensitive files on a targeted ...
Cisco Adaptive Security Appliance Software
Cisco Firepower Threat Defense
59 Github repositories
2 Articles
5
CVSSv2
CVE-2020-13413
An issue exists in Aviatrix Controller prior to 5.4.1204. There is a Observable Response Discrepancy from the API, which makes it easier to perform user enumeration via brute force.
Aviatrix Controller
Aviatrix Vpn Client 2.8.2
7.5
CVSSv2
CVE-2020-13417
An Elevation of Privilege issue exists in Aviatrix VPN Client prior to 2.10.7, because of an incomplete fix for CVE-2020-7224. This affects Linux, macOS, and Windows installations for certain OpenSSL parameters.
Aviatrix Controller
Aviatrix Gateway
Aviatrix Vpn Client
7.5
CVSSv2
CVE-2020-3187
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to conduct directory traversal attacks and obtain read and delete access to se...
Cisco Firepower Threat Defense
Cisco Asa 5505 Firmware 9.6\\(4\\)
Cisco Asa 5510 Firmware 9.6\\(4\\)
Cisco Asa 5512-x Firmware 9.6\\(4\\)
Cisco Asa 5515-x Firmware 9.6\\(4\\)
Cisco Asa 5520 Firmware 9.6\\(4\\)
Cisco Asa 5525-x Firmware 9.6\\(4\\)
Cisco Asa 5540 Firmware 9.6\\(4\\)
Cisco Asa 5545-x Firmware 9.6\\(4\\)
Cisco Asa 5550 Firmware 9.6\\(4\\)
Cisco Asa 5555-x Firmware 9.6\\(4\\)
Cisco Asa 5580 Firmware 9.6\\(4\\)
Cisco Asa 5585-x Firmware 9.6\\(4\\)
Cisco Adaptive Security Appliance Software
3 Github repositories
1 Article
5
CVSSv2
CVE-2020-3259
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to retrieve memory contents on an affected device, which could lead to the dis...
Cisco Firepower Threat Defense
Cisco Adaptive Security Appliance Software
2 Articles
4.3
CVSSv2
CVE-2020-5893
In versions 7.1.5-7.1.8, when a user connects to a VPN using BIG-IP Edge Client over an unsecure network, BIG-IP Edge Client responds to authentication requests over HTTP while sending probes for captive portal detection.
F5 Big-ip Access Policy Manager
F5 Big-ip Access Policy Manager Client
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »