Known Vulnerabilities for products from Cisofy
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Cisofy".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-13882 json | CISOfy Lynis before 3.0.0 has Incorrect Access Control because of a TOCTOU race condition. The routine to check the log and r... | 4.2 - MEDIUM | 2020-06-18 | 2023-11-07 |
| CVE-2019-13033 json | In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list when a data upload is being... | 3.3 - LOW | 2020-06-18 | 2023-11-07 |
| CVE-2017-8108 json | Unspecified tests in Lynis before 2.5.0 allow local users to write to arbitrary files or possibly gain privileges via a symli... | Not Provided | 2017-06-08 | 2025-04-20 |
| CVE-2014-3986 json | include/tests_webservers in Lynis before 1.5.5 allows local users to overwrite arbitrary files via a symlink attack on a /tmp... | Not Provided | 2014-06-08 | 2026-05-06 |
| CVE-2014-3982 json | include/tests_webservers in Lynis before 1.5.5 on AIX allows local users to overwrite arbitrary files via a symlink attack on... | Not Provided | 2014-06-08 | 2026-05-06 |
Known software with vulnerabilities from Cisofy
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Cisofy | Lynis | 1.5.0 |