Skip to main content

Vendor/product archive

qualys / cloud_agent CVEs

Beta · best-effort

5 CVEs tagged to qualys / cloud_agent0 Critical, 0 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2023-28143

Published Apr 18, 2023

Qualys Cloud Agent for macOS (versions 2.5.1-75 before 3.7) installer allows a local escalation of privilege bounded only to the time of installation and only on older macOSX (mac…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28142

Published Apr 18, 2023

A Race Condition exists in the Qualys Cloud Agent for Windows platform in versions from 3.1.3.34 and before 4.5.3.1. This allows attackers to escalate privileges limited on the lo…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28141

Published Apr 18, 2023

An NTFS Junction condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.8.0.31. Attackers may write files to arbitrary locations via a local attack v…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28140

Published Apr 18, 2023

An Executable Hijacking condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.5.3.1. Attackers may load a malicious copy of a Dependency Link Librar…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-29550

Published Aug 18, 2022

An issue was discovered in Qualys Cloud Agent 4.8.0-49. It writes "ps auxwwe" output to the /var/log/qualys/qualys-cloud-agent-scan.log file. This may, for example, unexpectedly w…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1