Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Securetrack MEDIUM 5.7
CVE-2020-13462

Insecure Direct Object Reference (IDOR) exists in Tufin SecureChange, affecting all versions prior to R20-2 GA. Fixed in version R20-2 GA.

Mitigation only
Fix from $1,600 2021-02-09
Securetrack HIGH 8.8
CVE-2020-13460

Multiple Cross-Site Request Forgery (CSRF) vulnerabilities were present in Tufin SecureTrack, affecting all versions prior to R20-2 GA.

Mitigation only
Fix from $1,950 2021-02-09
Securetrack MEDIUM 5.9
CVE-2020-13408

Tufin SecureTrack < R20-2 GA contains reflected + stored XSS (as in, the value is reflected back to the user, but is also stored within the DB and ca…

Mitigation only
Fix from $1,600 2021-02-09
Securetrack MEDIUM 5.9
CVE-2020-13409

Tufin SecureTrack < R20-2 GA contains reflected + stored XSS (as in, the value is reflected back to the user, but is also stored within the DB and ca…

Mitigation only
Fix from $1,600 2021-02-09
Securetrack MEDIUM 5.9
CVE-2020-13407

Tufin SecureTrack < R20-2 GA contains reflected + stored XSS (as in, the value is reflected back to the user, but is also stored within the DB and ca…

Mitigation only
Fix from $1,600 2021-02-09
Securechange MEDIUM 6.1
CVE-2020-13133

Tufin SecureChange prior to R19.3 HF3 and R20-1 HF1 are vulnerable to stored XSS. The successful exploitation requires admin privileges (for storing …

Mitigation only
Fix from $1,600 2021-01-20
Securetrack CRITICAL 9.9
CVE-2018-18406

An issue was discovered in Tufin SecureTrack 18.1 with TufinOS 2.16 build 1179(Final). The Audit Report module is affected by a blind XXE vulnerabili…

No fix yet
Fix from $2,300 2019-06-19