Lucene search

K

Appdynamics Security Vulnerabilities

cve
cve

CVE-2024-20394

A vulnerability in Cisco AppDynamics Network Visibility Agent could allow an unauthenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to the inability to handle unexpected input. An attacker who has local device access could...

5.5CVSS

6.6AI Score

0.0004EPSS

2024-05-15 06:15 PM
33
cve
cve

CVE-2024-20346

A vulnerability in the web-based management interface of Cisco AppDynamics Controller could allow an authenticated, remote attacker to perform a reflected cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation...

5.4CVSS

5.3AI Score

0.0004EPSS

2024-03-06 05:15 PM
44
cve
cve

CVE-2024-20345

A vulnerability in the file upload functionality of Cisco AppDynamics Controller could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this...

6.5CVSS

6.4AI Score

0.0004EPSS

2024-03-06 05:15 PM
52
cve
cve

CVE-2023-20274

A vulnerability in the installer script of Cisco AppDynamics PHP Agent could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient permissions that are set by the PHP Agent Installer on the PHP Agent install directory. An...

7.8CVSS

7.4AI Score

0.0004EPSS

2023-11-21 07:15 PM
38
cve
cve

CVE-2022-20736

A vulnerability in the web-based management interface of Cisco AppDynamics Controller Software could allow an unauthenticated, remote attacker to access a configuration file and the login page for an administrative console that they would not normally have authorization to access. This...

5.3CVSS

5.4AI Score

0.001EPSS

2022-06-15 06:15 PM
42
2
cve
cve

CVE-2021-34745

A vulnerability in the AppDynamics .NET Agent for Windows could allow an attacker to leverage an authenticated, local user account to gain SYSTEM privileges. This vulnerability is due to the .NET Agent Coordinator Service executing code with SYSTEM privileges. An attacker with local access to a...

7.8CVSS

7.8AI Score

0.0004EPSS

2021-08-18 08:15 PM
32
cve
cve

CVE-2019-1003039

An insufficiently protected credentials vulnerability exists in JenkinsAppDynamics Dashboard Plugin 1.0.14 and earlier in src/main/java/nl/codecentric/jenkins/appd/AppDynamicsResultsPublisher.java that allows attackers without permission to obtain passwords configured in jobs to obtain...

8.8CVSS

8.5AI Score

0.001EPSS

2019-03-08 09:29 PM
32
cve
cve

CVE-2018-0225

The Enterprise Console in Cisco AppDynamics App iQ Platform before 4.4.3.10598 (HF4) allows SQL injection, aka the Security Advisory 2089...

9.8CVSS

9.5AI Score

0.001EPSS

2018-06-08 08:29 PM
24