Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2023-36853
In Keysight Geolocation Server v2.4.2 and prior, a low privileged attacker could create a local ZIP file containing a malicious script in any locati…
Geolocation Server
after 2.4.2
HIGH 7.8
CVE-2023-34394
In Keysight Geolocation Server v2.4.2 and prior, an attacker could upload a specially crafted malicious file or delete any file or directory with SYS…
Geolocation Server
after 2.4.2
CRITICAL 9.8
CVE-2023-1967
Keysight N8844A Data Analytics Web Service deserializes untrusted data without sufficiently verifying the resulting data will be valid.
N8844a
after 2.1.7351
MEDIUM 6.1
CVE-2023-1860
A vulnerability was found in Keysight IXIA Hawkeye 3.3.16.28. It has been declared as problematic. This vulnerability affects unknown code of the fil…
Hawkeye
Mitigation only
CRITICAL 9.8
CVE-2023-1399
N6854A Geolocation Server versions 2.4.2 are vulnerable to untrusted data deserialization, which may allow a malicious actor to escalate privileges i…
N6854a Firmware
after 2.4.2
CRITICAL 9.8
CVE-2022-38129EPSS 19%
A path traversal vulnerability exists in the com.keysight.tentacle.licensing.LicenseManager.addLicenseFile() method in the Keysight Sensor Management…
Sensor Management Server
No fix yet
CRITICAL 9.8
CVE-2022-38130EPSS 54%
The com.keysight.tentacle.config.ResourceManager.smsRestoreDatabaseZip() method is used to restore the HSQLDB database used in SMS. It takes the path…
Sensor Management Server
Mitigation only
HIGH 7.5
CVE-2022-1661EPSS 16%
The affected products are vulnerable to directory traversal, which may allow an attacker to obtain arbitrary operating system files.
N6854a Firmware
2.4.0+
CRITICAL 9.8
CVE-2022-1660EPSS 17%
The affected products are vulnerable of untrusted data due to deserialization without prior authorization/authentication, which may allow an attacker…
N6854a Firmware
2.4.0+
HIGH 8.8
CVE-2020-35121
An issue was discovered in the Keysight Database Connector plugin before 1.5.0 for Confluence. A malicious user could insert arbitrary JavaScript int…
Database Connector
1.5.0+
HIGH 7.5
CVE-2020-35122
An issue was discovered in the Keysight Database Connector plugin before 1.5.0 for Confluence. A malicious user could bypass the access controls for …
Keysight Database Connector
1.5.0+