Vulnerabilities > Trustwave > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-02-19 CVE-2014-2727 OS Command Injection vulnerability in Trustwave Mailmarshal
The STARTTLS implementation in MailMarshal before 7.2 allows plaintext command injection.
network
low complexity
trustwave CWE-78
critical
9.8
2017-12-31 CVE-2017-18001 Missing Authentication for Critical Function vulnerability in Trustwave Secure web Gateway 11.8.0.27
Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys data, and consequently obtain remote root access, via the publicKey parameter to the /sendKey URI.
network
low complexity
trustwave CWE-306
critical
9.8