Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Web Application Screening MEDIUM 6.5
CVE-2023-6149

Qualys Jenkins Plugin for WAS prior to version and including 2.0.11 was identified to be affected by a security flaw, which was missing a permission …

Fix: after 2.0.11
Fix from $1,600 2024-01-09
Policy Compliance MEDIUM 5.4
CVE-2023-6148

Qualys Jenkins Plugin for Policy Compliance prior to version and including 1.0.5 was identified to be affected by a security flaw, which was missing …

Fix: after 1.0.5
Fix from $1,600 2024-01-09
Policy Compliance MEDIUM 6.5
CVE-2023-6147

Qualys Jenkins Plugin for Policy Compliance prior to version and including 1.0.5 was identified to be affected by a security flaw, which was missing …

Fix: after 1.0.5
Fix from $1,600 2024-01-09
Private Cloud Platform MEDIUM 5.4
CVE-2023-6146

A Qualys web application was found to have a stored XSS vulnerability resulting from the absence of HTML encoding in the presentation of logging info…

Fix: 10.24.0.0+
Fix from $1,600 2023-12-08
Cloud Agent HIGH 7.0
CVE-2023-28140

An Executable Hijacking condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.5.3.1. Attackers may load a malicious co…

Fix: 4.5.3.1+
Fix from $1,950 2023-04-18
Cloud Agent HIGH 7.0
CVE-2023-28142

A Race Condition exists in the Qualys Cloud Agent for Windows platform in versions from 3.1.3.34 and before 4.5.3.1. This allows attackers to escalat…

Fix: 4.5.3.1+
Fix from $1,950 2023-04-18
Cloud Agent HIGH 7.0
CVE-2023-28143

Qualys Cloud Agent for macOS (versions 2.5.1-75 before 3.7) installer allows a local escalation of privilege bounded only to the time of installation…

Fix: 3.7+
Fix from $1,950 2023-04-18
Cloud Agent MEDIUM 6.3
CVE-2023-28141

An NTFS Junction condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.8.0.31. Attackers may write files to arbitrary …

Fix: 4.8.0.31+
Fix from $1,600 2023-04-18
Cloud Agent For Linux HIGH 7.3
CVE-2022-29549

An issue was discovered in Qualys Cloud Agent 4.8.0-49. It executes programs at various full pathnames without first making ownership and permission …

Fix: 2.5.548.2+
Fix from $1,950 2022-08-18
Cloud Agent MEDIUM 5.5
CVE-2022-29550

An issue was discovered in Qualys Cloud Agent 4.8.0-49. It writes "ps auxwwe" output to the /var/log/qualys/qualys-cloud-agent-scan.log file. This ma…

No fix yet
Fix from $1,600 2022-08-18