controlup CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

controlup vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to controlup, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-27905 In ControlUp Real-Time Agent before 8.6, an unquoted path can result in privilege escalation. An attacker would require write permissions to the root level of the OS drive (C:\) to exploit this. [email protected] 7.2 0.38% 2022-04-27 2024-11-21
CVE-2021-45912 An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attacker to run OS commands via the ProcessActionRequest WCF method. [email protected] 7.8 0.14% 2022-01-04 2024-11-21
CVE-2021-45913 A hardcoded key in ControlUp Real-Time Agent (cuAgent.exe) before 8.2.5 may allow a potential attacker to run OS commands via a WCF channel. [email protected] 7.2 0.31% 2022-01-04 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence