Show filters
126 Total Results
Displaying 11-20 of 126
Sort by:
Attacker Value
Unknown

CVE-2025-0501

Disclosure Date: January 15, 2025 (last updated January 29, 2025)
An issue in the native clients for Amazon WorkSpaces (when running PCoIP protocol) may allow an attacker to access remote sessions via man-in-the-middle.
0
Attacker Value
Unknown

CVE-2025-0500

Disclosure Date: January 15, 2025 (last updated January 29, 2025)
An issue in the native clients for Amazon WorkSpaces (when running Amazon DCV protocol), Amazon AppStream 2.0, and Amazon DCV Clients may allow an attacker to access remote sessions via man-in-the-middle.
0
Attacker Value
Unknown

CVE-2024-8496

Disclosure Date: December 11, 2024 (last updated December 18, 2024)
Under specific circumstances, insecure permissions in Ivanti Workspace Control before version 10.18.40.0 allows a local authenticated attacker to achieve local privilege escalation.
Attacker Value
Unknown

CVE-2024-7890

Disclosure Date: September 11, 2024 (last updated October 23, 2024)
Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
Attacker Value
Unknown

CVE-2024-7889

Disclosure Date: September 11, 2024 (last updated October 23, 2024)
Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
Attacker Value
Unknown

CVE-2024-8012

Disclosure Date: September 10, 2024 (last updated September 19, 2024)
An authentication bypass weakness in the message broker service of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges.
Attacker Value
Unknown

CVE-2024-44107

Disclosure Date: September 10, 2024 (last updated September 19, 2024)
DLL hijacking in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges and achieve arbitrary code execution.
Attacker Value
Unknown

CVE-2024-44106

Disclosure Date: September 10, 2024 (last updated September 19, 2024)
Insufficient server-side controls in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges.
Attacker Value
Unknown

CVE-2024-44105

Disclosure Date: September 10, 2024 (last updated September 19, 2024)
Cleartext transmission of sensitive information in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to obtain OS credentials.
Attacker Value
Unknown

CVE-2024-44104

Disclosure Date: September 10, 2024 (last updated September 19, 2024)
An incorrectly implemented authentication scheme that is subjected to a spoofing attack in the management console of Ivanti Workspace Control version 10.18.0.0 and below allows a local authenticated attacker to escalate their privileges.