Vulnerabilities
Vulnerable Software
Aternity:  >> Aternity  Security Vulnerabilities
Incorrect access control in Aternity agent in Riverbed Aternity before 12.1.4.27 allows for local privilege escalation. There is an insufficiently protected handle to the A180AG.exe SYSTEM process with PROCESS_ALL_ACCESS rights.
CVSS Score
7.8
EPSS Score
0.001
Published
2023-01-26
The web server in Aternity before 9.0.1 does not require authentication for getMBeansFromURL loading of Java MBeans, which allows remote attackers to execute arbitrary Java code by registering MBeans.
CVSS Score
9.8
EPSS Score
0.005
Published
2016-09-29
Multiple cross-site scripting (XSS) vulnerabilities in the web server in Aternity before 9.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTPAgent, (2) MacAgent, (3) getExternalURL, or (4) retrieveTrustedUrl page.
CVSS Score
6.1
EPSS Score
0.003
Published
2016-09-29


Contact Us

Shodan ® - All rights reserved