Vendor
high
advisory
SQL Injection in Fleet Premium Okta Integration
1 TTPA SQL injection vulnerability in the Fleet Premium Okta conditional access integration allows an enrolled host to execute arbitrary database queries, leading to privilege escalation and potential remote code execution.
Fleet Premium
1t
high
advisory
Multiple Vulnerabilities in Fleet
2 TTPsFleet is affected by multiple security vulnerabilities that allow unauthenticated or authenticated attackers to perform SQL injection, arbitrary code execution, and unauthorized data manipulation.
Fleet
vulnerability
web-application
product-news
2t
critical
advisory
Orbit Agent Local Privilege Escalation via Tcl Command Injection
2 rules 1 TTPThe Orbit agent is vulnerable to local privilege escalation due to Tcl command injection, where a crafted password containing '}' can inject arbitrary Tcl commands and allow an unprivileged local user to execute commands as root.
Orbit agent
privilege-escalation
tcl-injection
macos
2r
1t