Vulnerabilities > Fit2Cloud

DATE CVE VULNERABILITY TITLE RISK
2024-01-06 CVE-2023-50612 Incorrect Default Permissions vulnerability in Fit2Cloud Cloudexplorer Lite 1.4.1
Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.
local
low complexity
fit2cloud CWE-276
7.8
2023-11-28 CVE-2023-48193 Unspecified vulnerability in Fit2Cloud Jumpserver 3.8.0
Insecure Permissions vulnerability in JumpServer GPLv3 v.3.8.0 allows a remote attacker to execute arbitrary code via bypassing the command filtering function.
network
low complexity
fit2cloud
critical
9.8
2023-10-31 CVE-2023-46138 Unspecified vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host and maintenance security audit system that complies with 4A specifications.
network
low complexity
fit2cloud
5.3
2023-10-30 CVE-2023-44397 Unspecified vulnerability in Fit2Cloud Cloudexplorer Lite
CloudExplorer Lite is an open source, lightweight cloud management platform.
network
low complexity
fit2cloud
critical
9.8
2023-10-25 CVE-2023-46123 Improper Restriction of Excessive Authentication Attempts vulnerability in Fit2Cloud Jumpserver
jumpserver is an open source bastion machine, professional operation and maintenance security audit system that complies with 4A specifications.
network
low complexity
fit2cloud CWE-307
5.3
2023-09-27 CVE-2023-42818 Improper Restriction of Excessive Authentication Attempts vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host.
network
low complexity
fit2cloud CWE-307
critical
9.8
2023-09-27 CVE-2023-43651 Code Injection vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host.
network
low complexity
fit2cloud CWE-94
critical
9.9
2023-09-27 CVE-2023-43650 Unspecified vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host.
network
high complexity
fit2cloud
7.4
2023-09-27 CVE-2023-43652 Unspecified vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host.
network
low complexity
fit2cloud
critical
9.1
2023-09-27 CVE-2023-42819 Unspecified vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host.
network
low complexity
fit2cloud
8.8