Vulnerabilities
5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2023-27132 +1 in the same advisory: …27133 | TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web portal. TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web portal. NOTE: CVE-2023-31069 is only about the TSplus Remote Access product, not the TSplus Remote Work product. NVD description · AI analysis pending | 9.8 | <1% | PoC |
| — | |
| CVE-2023-31068 +1 in the same advisory: …31069 | An issue was discovered in TSplus Remote Access through 16.0.2.14. An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\UserDesktop\themes. NVD description · AI analysis pending | 9.8 | 5% |
| — | ||
| CVE-2023-31067 | An issue was discovered in TSplus Remote Access through 16.0.2.14. An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\Clients\www. NVD description · AI analysis pending | 9.8 | 5% | PoC |
| — |