Known Vulnerabilities for products from Qualys

Listed below are 9 of the newest known vulnerabilities associated with the vendor "Qualys".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-28143 json Qualys Cloud Agent for macOS (versions 2.5.1-75 before 3.7) installer allows a local escalation of privilege bounded only to... 7 - HIGH 2023-04-18 2023-04-28
CVE-2023-28142 json A Race Condition exists in the Qualys Cloud Agent for Windows platform in versions from 3.1.3.34 and before 4.5.3.1. This al... 7 - HIGH 2023-04-18 2023-04-28
CVE-2023-28141 json An NTFS Junction condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.8.0.31. Attackers may ... 6.3 - MEDIUM 2023-04-18 2023-04-28
CVE-2023-28140 json An Executable Hijacking condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.5.3.1. Attacker... 7 - HIGH 2023-04-18 2023-04-28
CVE-2023-6148 json An Executable Hijacking condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.5.3.1. Attacker... 5.4 - MEDIUM 2024-01-09 2024-01-24
CVE-2023-6147 json An Executable Hijacking condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.5.3.1. Attacker... 6.5 - MEDIUM 2024-01-09 2024-01-24
CVE-2023-4777 json An incorrect permission check in Qualys Container Scanning Connector Plugin 1.6.2.6 and earlier allows attackers with global... 4.3 - MEDIUM 2023-09-08 2023-09-13
CVE-2022-29550 json ** DISPUTED ** An issue was discovered in Qualys Cloud Agent 4.8.0-49. It writes "ps auxwwe" output to the /var/log/qualys/qu... 5.5 - MEDIUM 2022-08-18 2023-11-07
CVE-2022-29549 json An issue was discovered in Qualys Cloud Agent 4.8.0-49. It executes programs at various full pathnames without first making o... 7.3 - HIGH 2022-08-18 2022-09-15

Known software with vulnerabilities from Qualys

Type Vendor Product Version
ApplicationQualysQualysguardscap1.2
ApplicationQualysQualysguardsuite7.10
ApplicationQualysQualyssuite8.2