Vulnerabilities > Skyboxsecurity

DATE CVE VULNERABILITY TITLE RISK
2018-01-12 CVE-2015-9250 Path Traversal vulnerability in Skyboxsecurity Skybox Platform
An issue was discovered in Skybox Platform before 7.5.201.
network
low complexity
skyboxsecurity CWE-22
7.5
2018-01-12 CVE-2015-9249 SQL Injection vulnerability in Skyboxsecurity Skybox Platform
An issue was discovered in Skybox Platform before 7.5.201.
network
low complexity
skyboxsecurity CWE-89
critical
9.8
2018-01-12 CVE-2015-9248 Cross-site Scripting vulnerability in Skyboxsecurity Skybox Platform
An issue was discovered in Skybox Platform before 7.5.201.
network
low complexity
skyboxsecurity CWE-79
5.4
2018-01-12 CVE-2015-9247 Cross-site Scripting vulnerability in Skyboxsecurity Skybox Platform 7.5.201
An issue was discovered in Skybox Platform before 7.5.401.
network
low complexity
skyboxsecurity CWE-79
5.4
2018-01-12 CVE-2015-9246 Improper Input Validation vulnerability in Skyboxsecurity Skybox Platform
An issue was discovered in Skybox Platform before 7.5.201.
network
low complexity
skyboxsecurity CWE-20
critical
9.8
2017-10-03 CVE-2017-14773 Unspecified vulnerability in Skyboxsecurity Skybox Manager Client Application 8.5.500
Skybox Manager Client Application prior to 8.5.501 is prone to an elevation of privileges vulnerability during authentication of a valid user in a debugger-pause state.
local
low complexity
skyboxsecurity
7.8
2017-10-03 CVE-2017-14772 Information Exposure vulnerability in Skyboxsecurity Skybox Manager Client Application
Skybox Manager Client Application is prone to information disclosure via a username enumeration attack.
local
low complexity
skyboxsecurity CWE-200
3.3
2017-10-03 CVE-2017-14771 Improper Input Validation vulnerability in Skyboxsecurity Skybox Manager Client Application 8.5.500
Skybox Manager Client Application prior to 8.5.501 is prone to an arbitrary file upload vulnerability due to insufficient input validation of user-supplied files path when uploading files via the application.
local
low complexity
skyboxsecurity CWE-20
5.5
2017-10-03 CVE-2017-14770 Information Exposure vulnerability in Skyboxsecurity Skybox Manager Client Application 8.5.500
Skybox Manager Client Application prior to 8.5.501 is prone to an information disclosure vulnerability of user password hashes.
local
low complexity
skyboxsecurity CWE-200
5.5