Helpsystems

    Dashboard / Vendors

    Products: 4
    Vulnerabilities: 7
    Known Exploited: 0
    2
    Critical Level Threats
    2
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2022-42948

    Cobalt Strike 4.7.1 fails to properly escape HTML tags when they are displayed on Swing components. By injecting crafted HTML code, it is possible to remotely execute code in the Cobalt Strike UI.

    Last Modified: Nov 03, 2025
    Published: Mar 24, 2023

    CVE-2022-39197

    An XSS (Cross Site Scripting) vulnerability was found in HelpSystems Cobalt Strike through 4.7 that allowed a remote attacker to execute HTML on the Cobalt Strike teamserver. To exploit the vulnerability, one must first inspect a Cobalt Strike payload, and then modify the username field in the payload (or create a new payload with the extracted information and then modify that username field to be malformed).

    Last Modified: Nov 03, 2025
    Published: Sep 22, 2022

    CVE-2021-46830

    A path traversal vulnerability exists within GoAnywhere MFT before 6.8.3 that utilize self-registration for the GoAnywhere Web Client. This vulnerability could potentially allow an external user who self-registers with a specific username and/or profile information to gain access to files at a higher directory level than intended.

    Last Modified: Nov 21, 2024
    Published: Jul 27, 2022

    CVE-2021-43708

    The Labeling tool in Titus Classification Suite 18.8.1910.140 allows users to avoid the generation of a classification label by using Excel's safe mode.

    Last Modified: Nov 21, 2024
    Published: Apr 21, 2022

    CVE-2022-23317

    CobaltStrike <=4.5 HTTP(S) listener does not determine whether the request URL begins with "/", and attackers can obtain relevant information by specifying the URL.

    Last Modified: Nov 21, 2024
    Published: Feb 15, 2022
    Items Per Page