Consona
9 CVEs tracked since 2010. Since May 2010, none of them reached CISA KEV.
Consona CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2010-05 | 9 | 0 |
Products
The products that kept showing up in Consona's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 9 most recently published vulnerabilities affecting Consona.
- CVE-2010-1907The SdcUser.TgConCtl ActiveX control in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allows remote attackers to discover the username of the client user, and con...4.3
- CVE-2010-1906tgsrv.exe in the Repair Service in Consona Dynamic Agent, Repair Manager, Subscriber Activation, and Subscriber Agent relies on a predictable timestamp field to validate input to the \\.\pipe\__Rep...7.2
- CVE-2010-1910The Forgot Password implementation in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allows remote attackers to reset passwords of accounts with blank Hint questions and Hint ans...5.1
- CVE-2010-1913The default configuration of pluginlicense.ini for the SdcWebSecureBase interface in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance, when downloaded from a server ...9.3
- CVE-2010-1909Buffer overflow in the RunCmd method in the SdcUser.TgConCtl ActiveX control in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allows remote attackers to execute a...7.6
- CVE-2010-1911The site-locking implementation in the SdcWebSecureBase interface in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance relies on a list of server domain names to rest...9.3
- CVE-2010-1912The SdcWebSecureBase interface in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allows remote attackers to bypass intended restrictions on ActiveX execution via "...9.3
- CVE-2010-1908The SdcUser.TgConCtl ActiveX control in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance does not properly restrict access to the HTTPDownloadFile, HTTPGetFile, Inst...9.3
- CVE-2010-1905Multiple cross-site scripting (XSS) vulnerabilities in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allow remote attackers to inject arbitrary web script or HTML via crafted in...4.3
The record
- Peak rank
- #8 in May 2010
- Busiest month shown
- May 2010, 9 CVEs
- Months with a KEV entry
- 0 since May 2010
- Monthly snapshots
- 1 since 2010