Vulnerabilities > Automox > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-04-13 CVE-2022-24308 Unspecified vulnerability in Automox
Automox Agent prior to version 37 on Windows and Linux and Version 36 on OSX could allow for a non privileged user to obtain sensitive information during the install process.
local
low complexity
automox
5.5
2021-04-23 CVE-2021-26909 Use of Insufficiently Random Values vulnerability in Automox
Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organization's security program.
network
low complexity
automox CWE-330
5.3