Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.3 CVE-2026-24712 Northern.tech CFEngine Enterprise and Community before 3.21.8, 3.24.3, and 3.27.0 allows Command injection. Cfengine 3.21.8 / 3.24.3+ Fix from $1,9502026-05-14 MEDIUM 6.1 CVE-2026-24710 Northern.tech CFEngine Enterprise before 3.21.8, 3.24.3, and 3.27.0 allows XSS. Cfengine 3.21.8 / 3.24.3+ Fix from $1,6002026-05-14 MEDIUM 5.3 CVE-2026-24711 Northern.tech CFEngine Enterprise before 3.21.8, 3.24.3, and 3.27.0 has Incorrect Access Control. Cfengine 3.21.8 / 3.24.3+ Fix from $1,6002026-05-14 HIGH 7.5 CVE-2023-45684 Northern.tech CFEngine Enterprise before 3.21.3 allows SQL Injection. The fixed versions are 3.18.6 and 3.21.3. The earliest affected version is 3.6.… Cfengine 3.18.6 / 3.21.3+ Fix from $1,9502023-11-14 MEDIUM 6.5 CVE-2023-26560 Northern.tech CFEngine Enterprise before 3.21.1 allows a subset of authenticated users to leverage the Scheduled Reports feature to read arbitrary fi… Cfengine 3.21.1+ Fix from $1,6002023-04-26 CRITICAL 9.8 CVE-2022-29556 The iot-manager microservice 1.0.0 in Northern.tech Mender Enterprise before 3.2.2 allows SSRF because the Azure IoT Hub integration provides several… Mender Mitigation only Fix from $2,3002022-04-28 HIGH 8.8 CVE-2022-29555 The Deviceconnect microservice through 1.3.0 in Northern.tech Mender Enterprise before 3.2.2. allows Cross-Origin Websocket Hijacking. Mender 3.2.2+ Fix from $1,9502022-04-28 MEDIUM 5.5 CVE-2021-44216 Northern.tech CFEngine Enterprise before 3.15.5 and 3.18.x before 3.18.1 has Insecure Permissions that may allow unauthorized local users to access t… Cfengine 3.15.5 / 3.18.1+ Fix from $1,6002022-03-10 MEDIUM 5.5 CVE-2021-44215 Northern.tech CFEngine Enterprise 3.15.4 before 3.15.5 has Insecure Permissions that may allow unauthorized local users to have an unspecified impact. Cfengine 3.15.5 / 3.18.1+ Fix from $1,6002022-03-10 MEDIUM 5.5 CVE-2021-38379 The Hub in CFEngine Enterprise 3.6.7 through 3.18.0 has Insecure Permissions that allow local Information Disclosure. Cfengine after 3.18.0 Fix from $1,6002021-10-27 MEDIUM 6.5 CVE-2021-36756 CFEngine Enterprise 3.15.0 through 3.15.4 has Missing SSL Certificate Validation. Cfengine after 3.15.4 Fix from $1,6002021-10-27 HIGH 7.5 CVE-2021-35342 The useradm service 1.14.0 (in Northern.tech Mender Enterprise 2.7.x before 2.7.1) and 1.13.0 (in Northern.tech Mender Enterprise 2.6.x before 2.6.1)… Useradm Mitigation only Fix from $1,9502021-08-27 MEDIUM 6.1 CVE-2019-19394 Northern.tech CFEngine Enterprise before 3.10.7, 3.11.x and 3.12.x before 3.12.3, 3.13.x, and 3.14.x allows XSS. This is fixed in 3.10.7, 3.12.3, and… Cfengine 3.10.7 / 3.12.3+ Fix from $1,6002020-04-16