Filter
-Infinity
0

ScreenConnectConnectWise ScreenConnect Authentication Bypass Vulnerability

First published (updated )

Kaseya VSA AgentKaseya VSA SQL Injection Vulnerability

First published (updated )

ConnectWiseConnectWise Automate through 2020.x has insufficient validation on certain authentication paths, all…

First published (updated )

ConnectWiseAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Th…

First published (updated )

ConnectWiseXEE

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseIn ConnectWise Control through 22.9.10032 (formerly known as ScreenConnect), after an executable fil…

First published (updated )

ConnectWiseThe Agent Update System in ConnectWise Automate before 2020.8 allows Privilege Escalation because th…

8.8
First published (updated )

ConnectWiseSQL Injection

8.8
First published (updated )

ConnectWiseCSRF

8.8
First published (updated )

ConnectWiseCSRF

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseConnectWise Control before 22.9.10032 (formerly known as ScreenConnect) fails to validate user-suppl…

8.8
First published (updated )

ScreenConnectImproper limitation of a pathname to a restricted directory (“path traversal”)

8.4
First published (updated )

ConnectWiseCode Injection

8.1
First published (updated )

ConnectWiseSQL Injection

7.5
First published (updated )

ConnectWiseSQL Injection

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseMalicious File Upload

7.2
First published (updated )

ConnectWiseAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Ce…

First published (updated )

ConnectWiseXSS

First published (updated )

ConnectWiseConnectwise Automate 2022.11 is vulnerable to Clickjacking. The login screen can be iframed and used…

First published (updated )

ConnectWise ManageConnectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendo…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWise ManageConnectWise - ScreenConnect Session Code Bypass

First published (updated )

ConnectWiseConnectwise Automate 2022.11 is vulnerable to Cleartext authentication. Authentication is being done…

First published (updated )

ConnectWiseConnectWise ScreenConnect through 23.8.4 allows local users to connect to arbitrary relay servers vi…

First published (updated )

ConnectWiseAn issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Th…

First published (updated )

ConnectWise ManageIn Connectwise Control 22.8.10013.8329, the login page does not implement HSTS headers therefore not…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ConnectWiseXSS

First published (updated )

BleepingComputerConnectWise urges ScreenConnect admins to patch critical RCE flaw

First published (updated )

BleepingComputerBlack Basta, Bl00dy ransomware gangs join ScreenConnect attacks

First published (updated )

BleepingComputerScreenConnect flaws exploited to drop new ToddleShark malware

First published (updated )

BleepingComputerMagnet Goblin hackers use 1-day flaws to drop custom Linux malware

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203