Vulnerabilities > Unisys > Stealth > High

DATE CVE VULNERABILITY TITLE RISK
2021-03-18 CVE-2021-3141 Insufficiently Protected Credentials vulnerability in Unisys Stealth 6.0
In Unisys Stealth (core) before 6.0.025.0, the Keycloak password is stored in a recoverable format that might be accessible by a local attacker, who could gain access to the Management Server and change the Stealth configuration.
local
low complexity
unisys CWE-522
7.8
2020-10-01 CVE-2020-24620 Use of Hard-coded Credentials vulnerability in Unisys Stealth
Unisys Stealth(core) before 4.0.134 stores passwords in a recoverable format.
local
low complexity
unisys CWE-798
7.8
2020-02-03 CVE-2019-18193 Information Exposure Through Log Files vulnerability in Unisys Stealth
In Unisys Stealth (core) 3.4.108.0, 3.4.209.x, 4.0.027.x and 4.0.114, key material inadvertently logged under certain conditions.
local
high complexity
unisys CWE-532
7.5
2018-02-19 CVE-2018-6592 Improper Resource Shutdown or Release vulnerability in Unisys Stealth 3.3
Unisys Stealth 3.3 Windows endpoints before 3.3.016.1 allow local users to gain access to Stealth-enabled devices by leveraging improper cleanup of memory used for negotiation key storage.
local
low complexity
unisys CWE-404
7.8