Meshcentral
by Meshcentral
Source repositories
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-51837 | Cri | 0.64 | 9.8 | 0.00 | Jan 30, 2024 | Ylianst MeshCentral 1.1.16 is vulnerable to Missing SSL Certificate Validation. | ||
| CVE-2023-51838 | Hig | 0.49 | 7.5 | 0.01 | Feb 2, 2024 | Ylianst MeshCentral 1.1.16 suffers from Use of a Broken or Risky Cryptographic Algorithm. | ||
| CVE-2024-26135 | Hig | 0.47 | 8.3 | 0.00 | Feb 20, 2024 | MeshCentral is a full computer management web site. Versions prior to 1.1.21 a cross-site websocket hijacking (CSWSH) vulnerability within the control.ashx endpoint. This component is the primary mechanism used within MeshCentral to perform administrative actions on the server.… | ||
| CVE-2023-51842 | Hig | 0.42 | 7.5 | 0.01 | Jan 29, 2024 | An algorithm-downgrade issue was discovered in Ylianst MeshCentral 1.1.16. |
- risk 0.64cvss 9.8epss 0.00
Ylianst MeshCentral 1.1.16 is vulnerable to Missing SSL Certificate Validation.
- risk 0.49cvss 7.5epss 0.01
Ylianst MeshCentral 1.1.16 suffers from Use of a Broken or Risky Cryptographic Algorithm.
- risk 0.47cvss 8.3epss 0.00
MeshCentral is a full computer management web site. Versions prior to 1.1.21 a cross-site websocket hijacking (CSWSH) vulnerability within the control.ashx endpoint. This component is the primary mechanism used within MeshCentral to perform administrative actions on the server.…
- risk 0.42cvss 7.5epss 0.01
An algorithm-downgrade issue was discovered in Ylianst MeshCentral 1.1.16.