Filter
-Infinity
0

ConnectWise ManageConnectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendo…

First published (updated )

ConnectWiseConnectWise Control before 22.9.10032 (formerly known as ScreenConnect) fails to validate user-suppl…

8.8
First published (updated )

The RegisterMedusa ransomware infects 300+, uses 'triple extortion'

First published (updated )

Dark ReadingHow Public & Private Sectors Can Better Align Cyber Defense

First published (updated )

The RegisterRussia's Sandworm caught snarfing credentials, data from American and Brit orgs

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Dark ReadingMicrosoft: Russia's Sandworm APT Exploits Edge Bugs Globally

First published (updated )

Kaseya VSA AgentKaseya VSA SQL Injection Vulnerability

First published (updated )

ScreenConnectConnectWise ScreenConnect Authentication Bypass Vulnerability

First published (updated )

ConnectWise ManageConnectWise - ScreenConnect Session Code Bypass

First published (updated )

ConnectWiseAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Th…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Ce…

First published (updated )

ConnectWiseCSRF

8.8
First published (updated )

ConnectWiseMalicious File Upload

7.2
First published (updated )

ConnectWiseXSS

First published (updated )

ConnectWiseAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Th…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseThe Agent Update System in ConnectWise Automate before 2020.8 allows Privilege Escalation because th…

8.8
First published (updated )

ConnectWiseConnectWise Automate through 2020.x has insufficient validation on certain authentication paths, all…

First published (updated )

ConnectWiseSQL Injection

7.5
First published (updated )

ConnectWiseSQL Injection

8.8
First published (updated )

ConnectWiseXEE

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseSQL Injection

7.5
First published (updated )

ConnectWiseCode Injection

8.1
First published (updated )

ConnectWiseConnectWise ScreenConnect through 23.8.4 allows local users to connect to arbitrary relay servers vi…

First published (updated )

ConnectWiseIn ConnectWise Control through 22.9.10032 (formerly known as ScreenConnect), after an executable fil…

First published (updated )

ConnectWiseConnectwise Automate 2022.11 is vulnerable to Clickjacking. The login screen can be iframed and used…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWise ManageIn Connectwise Control 22.8.10013.8329, the login page does not implement HSTS headers therefore not…

First published (updated )

ConnectWiseConnectwise Automate 2022.11 is vulnerable to Cleartext authentication. Authentication is being done…

First published (updated )

ScreenConnectImproper limitation of a pathname to a restricted directory (“path traversal”)

8.4
First published (updated )

The RegisterChinese snoops exploit F5, ConnectWise bugs to sell access

First published (updated )

The RegisterUS to probe Change Healthcare's data protection standards as lawsuits mount

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203