Digital Guardian
Products
5- 4 CVEs
- 2 CVEs
- 1 CVE
- 1 CVE
- 1 CVE
Recent CVEs
8| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-10173 | Hig | 0.58 | 8.8 | 0.05 | Apr 20, 2018 | Digital Guardian Management Console 7.1.2.0015 allows authenticated remote code execution because of Arbitrary File Upload functionality. | ||
| CVE-2018-10176 | Med | 0.42 | 6.5 | 0.02 | Apr 20, 2018 | Digital Guardian Management Console 7.1.2.0015 has a Directory Traversal issue. | ||
| CVE-2018-10175 | Med | 0.42 | 6.5 | 0.01 | Apr 20, 2018 | Digital Guardian Management Console 7.1.2.0015 has an XXE issue. | ||
| CVE-2018-10174 | Med | 0.42 | 6.5 | 0.01 | Apr 20, 2018 | Digital Guardian Management Console 7.1.2.0015 has an SSRF issue that allows remote attackers to read arbitrary files via file:// URLs, send TCP traffic to intranet hosts, or obtain an NTLM hash. This can occur even if the logged-in user has a read-only role. | ||
| CVE-2023-6253 | Med | 0.39 | 6.0 | 0.00 | Nov 22, 2023 | A saved encryption key in the Uninstaller in Digital Guardian's Agent before version 7.9.4 allows a local attacker to retrieve the uninstall key and remove the software by extracting the uninstaller key from the memory of the uninstaller file. | ||
| CVE-2022-35412 | Med | 0.33 | 5.1 | 0.00 | Jul 8, 2022 | Digital Guardian Agent 7.7.4.0042 allows an administrator (who ordinarily does not have a supported way to uninstall the product) to disable some of the agent functionality and then exfiltrate files to an external USB device. | ||
| CVE-2024-3334 | Med | 0.28 | 4.3 | 0.00 | Nov 15, 2024 | A security bypass vulnerability exists in the Removable Media Encryption (RME)component of Digital Guardian Windows Agents prior to version 8.2.0. This allows a user to circumvent encryption controls by modifying metadata on the USB device thereby compromising the… | ||
| CVE-2001-0739 | 0.00 | — | 0.00 | Oct 18, 2001 | Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges. |
- risk 0.58cvss 8.8epss 0.05
Digital Guardian Management Console 7.1.2.0015 allows authenticated remote code execution because of Arbitrary File Upload functionality.
- risk 0.42cvss 6.5epss 0.02
Digital Guardian Management Console 7.1.2.0015 has a Directory Traversal issue.
- risk 0.42cvss 6.5epss 0.01
Digital Guardian Management Console 7.1.2.0015 has an XXE issue.
- risk 0.42cvss 6.5epss 0.01
Digital Guardian Management Console 7.1.2.0015 has an SSRF issue that allows remote attackers to read arbitrary files via file:// URLs, send TCP traffic to intranet hosts, or obtain an NTLM hash. This can occur even if the logged-in user has a read-only role.
- risk 0.39cvss 6.0epss 0.00
A saved encryption key in the Uninstaller in Digital Guardian's Agent before version 7.9.4 allows a local attacker to retrieve the uninstall key and remove the software by extracting the uninstaller key from the memory of the uninstaller file.
- risk 0.33cvss 5.1epss 0.00
Digital Guardian Agent 7.7.4.0042 allows an administrator (who ordinarily does not have a supported way to uninstall the product) to disable some of the agent functionality and then exfiltrate files to an external USB device.
- risk 0.28cvss 4.3epss 0.00
A security bypass vulnerability exists in the Removable Media Encryption (RME)component of Digital Guardian Windows Agents prior to version 8.2.0. This allows a user to circumvent encryption controls by modifying metadata on the USB device thereby compromising the…
- CVE-2001-0739Oct 18, 2001risk 0.00cvss —epss 0.00
Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.