Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Danny Jordan

#30480of 53,630
8.6Total CVSS
Vulnerabilities · 2
Low
1
Medium
1
PT-2021-17166
3.3
2021-04-23
Automox · Automox Agent · CVE-2021-26908
Name of the Vulnerable Software and Affected Versions: Automox Agent versions prior to 31 Description: The issue concerns the logging of potentially sensitive information in local log files by the Automox Agent, which could be exploited by a locally-authenticated attacker to compromise an organization's security. The problem has been resolved in version 31 of the Automox Agent. Recommendations: For versions prior to 31, update to version 31 or later to resolve the issue.
PT-2021-17167
5.3
2021-04-23
Automox · Automox Agent · CVE-2021-26909
Name of the Vulnerable Software and Affected Versions: Automox Agent versions prior to 31 Description: The issue concerns an insufficiently protected S3 bucket endpoint used for storing sensitive files. This could potentially be brute-forced by an attacker, allowing them to subvert an organization's security program. Recommendations: For Automox Agent versions prior to 31, update to version 31 to resolve the issue.