OVH's vulnerability profile centers on its Bastion privileged-access management product, a narrowly scoped but security-critical component for controlling administrative access to infrastructure. The recurring signal is authentication-related weakness in a product designed to gate sensitive operations, a structural concern for any organization relying on this class of access control. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ovh over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-45140MEDIUM The Bastion provides authentication, authorization, traceability and auditability for SSH accesses. SCP and SFTP plugins don't honor group-based JIT MFA. Establishing a SCP/SFTP co | Nov 8, 2023 | 4.6 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ovh.
Media articles that mention a CVE ID that affects a product developed by Ovh — matched by CVE ID, not by vendor name.