Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Automox Inc.

First CVE: Apr 23, 2021Active for: 5 yearsTotal CVEs: 7

Automox Inc. develops endpoint management and patch-automation software deployed across enterprise environments to centralize device updates and compliance. The vendor's vulnerability profile centers on a single flagship product and recurs through access-control and permission-management weakness classes—including incorrect default permissions, improper access control, and sensitive information disclosure in logs—that reflect the privileged operational scope required of management agents. Live severity, exploitation, and exposure figures are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 88% of tracked vendors
3.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 95% of tracked vendors
6.4
Avg CVSS Score
Higher Avg CVSS Score than 38% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Automox Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 23, 2021
5 years ago
Most Recent CVE
Oct 21, 2022
1,372 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-43326HIGH
Automox Agent before 32 on Windows incorrectly sets permissions on a temporary directory.
Dec 15, 20217.836NOYES
CVE-2021-43325HIGH
Automox Agent 33 on Windows incorrectly sets permissions on a temporary directory. NOTE: this issue exists because of a CVE-2021-43326 regression.
Dec 15, 20217.825NONO
CVE-2022-27904HIGH
Automox Agent for macOS before version 39 was vulnerable to a time-of-check/time-of-use (TOCTOU) race-condition attack during the agent install process.
Jul 1, 20227.024NONO
CVE-2022-24308MEDIUM
Automox Agent prior to version 37 on Windows and Linux and Version 36 on OSX could allow for a non privileged user to obtain sensitive information during the install process.
Apr 13, 20225.520NONO
CVE-2022-36122HIGH
The Automox Agent before 40 on Windows incorrectly sets permissions on key files.
Oct 21, 20227.819NONO
CVE-2021-26909MEDIUM
Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organiza
Apr 23, 20215.319NONO
CVE-2021-26908LOW
Automox Agent prior to version 31 logs potentially sensitive information in local log files, which could be used by a locally-authenticated attacker to subvert an organization's se
Apr 23, 20213.315NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
14%
29%
57%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local6 (85.7%)
Network1 (14.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low6 (85.7%)
High1 (14.3%)
Unknown0 (0.0%)
User Interaction
None7 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low6 (85.7%)
High0 (0.0%)
None1 (14.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
14.3% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Automox Inc..

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Automox Inc. — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Automox Inc.'s Products

View all 2 CNAs →

Top CWEs