Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Cobalt Strike CRITICAL 9.8
CVE-2022-42948 KEV

Cobalt Strike 4.7.1 fails to properly escape HTML tags when they are displayed on Swing components. By injecting crafted HTML code, it is possible to…

Mitigation only
Fix from $2,300 2023-03-24
Cobalt Strike MEDIUM 6.1
CVE-2022-39197 KEVEPSS 46%

An XSS (Cross Site Scripting) vulnerability was found in HelpSystems Cobalt Strike through 4.7 that allowed a remote attacker to execute HTML on the …

Fix: 4.7.1+
Fix from $1,600 2022-09-22
Goanywhere Managed File Transfer MEDIUM 6.5
CVE-2021-46830

A path traversal vulnerability exists within GoAnywhere MFT before 6.8.3 that utilize self-registration for the GoAnywhere Web Client. This vulnerabi…

Fix: 6.8.3+
Fix from $1,600 2022-07-27
Titus Data Classification MEDIUM 5.5
CVE-2021-43708

The Labeling tool in Titus Classification Suite 18.8.1910.140 allows users to avoid the generation of a classification label by using Excel's safe mo…

Mitigation only
Fix from $1,600 2022-04-21
Cobalt Strike HIGH 7.5
CVE-2022-23317

CobaltStrike <=4.5 HTTP(S) listener does not determine whether the request URL begins with "/", and attackers can obtain relevant information by spec…

Fix: 4.5+
Fix from $1,950 2022-02-15
Cobalt Strike HIGH 7.5
CVE-2021-36798

A Denial-of-Service (DoS) vulnerability was discovered in Team Server in HelpSystems Cobalt Strike 4.2 and 4.3. It allows remote attackers to crash t…

No fix yet
Fix from $1,950 2021-08-09
Boks CRITICAL 9.8
CVE-2018-20764

A buffer overflow exists in HelpSystems tcpcrypt on Linux, used for BoKS encrypted telnet through BoKS version 6.7.1. Since tcpcrypt is setuid, explo…

Fix: after 6.7.1
Fix from $2,300 2019-02-08