ZeroHour

Vulnerabilities

5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2023-27132
+1 in the same advisory: …27133
TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web portal.

TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web portal. NOTE: CVE-2023-31069 is only about the TSplus Remote Access product, not the TSplus Remote Work product.

NVD description · AI analysis pending
9.8<1% PoC
  • tsplus tsplus remote work
CVE-2023-31068
+1 in the same advisory: …31069
An issue was discovered in TSplus Remote Access through 16.0.2.14.

An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\UserDesktop\themes.

NVD description · AI analysis pending
9.85%
  • tsplus tsplus remote work
CVE-2023-31067
An issue was discovered in TSplus Remote Access through 16.0.2.14.

An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\Clients\www.

NVD description · AI analysis pending
9.85% PoC
  • tsplus tsplus remote access