Vulnerabilidades em KnowBe4
4 resultadosAnálise Vexday
KnowBe4 apresenta um perfil de risco baixo com apenas 4 CVEs registradas e nenhuma sob exploração ativa ou com severidade crítica. A fraqueza dominante (CWE-269 - improper handling of permissions) sugere problemas de controle de acesso, mas a ausência de publicações recentes indica que o risco não está em evolução imediata.
CVE-2024-29209MEDIUMA medium severity vulnerability has been identified in the update mechanism of the Phish Alert Button for Outlook, which could allow an attaEPSS 0.4%CVE-2020-36844MEDIUMThe KnowBe4 Security Awareness Training application before 2020-01-10 allows reflected XSS. The response has a SCRIPT element that sets windEPSS 0.3%CVE-2020-36845MEDIUMThe KnowBe4 Security Awareness Training application before 2020-01-10 contains a redirect function that does not validate the destination UREPSS 0.3%CVE-2024-29210LOWA local privilege escalation (LPE) vulnerability has been identified in Phish Alert Button for Outlook (PAB), specifically within its configEPSS 0.2%