CVE-2025-1091
- EPSS 0.05%
- Veröffentlicht 26.02.2025 00:15:11
- Zuletzt bearbeitet 26.02.2025 00:15:11
A Broken Authorization schema exists where any authenticated user could download IOA script and configuration files if the URL is known.
CVE-2025-0760
- EPSS 0.04%
- Veröffentlicht 26.02.2025 00:15:10
- Zuletzt bearbeitet 26.02.2025 00:15:10
A Credential Disclosure vulnerability exists where an administrator could extract the stored SMTP account credentials due to lack of encryption.
CVE-2024-3232
- EPSS 0.81%
- Veröffentlicht 16.07.2024 17:15:11
- Zuletzt bearbeitet 21.11.2024 09:29:12
A formula injection vulnerability exists in Tenable Identity Exposure where an authenticated remote attacker with administrative privileges could manipulate application form fields in order to trick another administrator into executing CSV payloads. ...
CVE-2024-1683
- EPSS 0.03%
- Veröffentlicht 23.02.2024 01:15:52
- Zuletzt bearbeitet 17.12.2024 17:10:15
A DLL injection vulnerability exists where an authenticated, low-privileged local attacker could modify application files on the TIE Secure Relay host, which could allow for overriding of the configuration and running of new Secure Relay services.