Filters

The RegisterChinese snoops exploit F5, ConnectWise bugs to sell access

First published (updated )

The RegisterUS to probe Change Healthcare's data protection standards as lawsuits mount

First published (updated )

BleepingComputerMagnet Goblin hackers use 1-day flaws to drop custom Linux malware

First published (updated )

BleepingComputerScreenConnect flaws exploited to drop new ToddleShark malware

First published (updated )

BleepingComputerBlack Basta, Bl00dy ransomware gangs join ScreenConnect attacks

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWise ScreenConnectConnectWise ScreenConnect Authentication Bypass Vulnerability

First published (updated )

ConnectWise ScreenConnectImproper limitation of a pathname to a restricted directory (“path traversal”)

8.4
First published (updated )

ConnectWise AutomateCode Injection

8.1
First published (updated )

ConnectWise AutomateConnectWise ScreenConnect through 23.8.4 allows local users to connect to arbitrary relay servers vi…

First published (updated )

ConnectWise ControlConnectWise Control before 22.9.10032 (formerly known as ScreenConnect) fails to validate user-suppl…

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWise ControlIn ConnectWise Control through 22.9.10032 (formerly known as ScreenConnect), after an executable fil…

First published (updated )

ConnectWise AutomateConnectwise Automate 2022.11 is vulnerable to Clickjacking. The login screen can be iframed and used…

First published (updated )

Connectwise ConnectwiseIn Connectwise Control 22.8.10013.8329, the login page does not implement HSTS headers therefore not…

First published (updated )

Connectwise ConnectwiseConnectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendo…

First published (updated )

ConnectWise AutomateConnectwise Automate 2022.11 is vulnerable to Cleartext authentication. Authentication is being done…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Connectwise ConnectwiseConnectWise - ScreenConnect Session Code Bypass

First published (updated )

ConnectWise AutomateXEE

First published (updated )

Connectwise Connectwise AutomateSQL Injection

7.5
First published (updated )

ConnectWise AutomateThe Agent Update System in ConnectWise Automate before 2020.8 allows Privilege Escalation because th…

8.8
First published (updated )

ConnectWise AutomateConnectWise Automate through 2020.x has insufficient validation on certain authentication paths, all…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Connectwise Connectwise AutomateSQL Injection

7.5
First published (updated )

Connectwise Automate ApiSQL Injection

8.8
First published (updated )

ConnectWise ControlAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Ce…

First published (updated )

ConnectWise ControlAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Th…

First published (updated )

ConnectWise ControlMalicious File Upload

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWise ControlAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Th…

First published (updated )

ConnectWise ControlXSS

First published (updated )

ConnectWise ControlCSRF

8.8
First published (updated )

Connectwise ManageditsyncKaseya VSA SQL Injection Vulnerability

First published (updated )

ConnectWise ManageXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWise ManageCSRF

8.8
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203