Tembria's vulnerability profile centers on its server-monitoring product, with observed weaknesses rooted in input-handling and memory-safety issues such as cross-site scripting flaws and buffer boundary violations. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tembria over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-1316MEDIUM Multiple stack-based buffer overflows in Tembria Server Monitor before 5.6.1 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code v | Apr 14, 2010 | 5.0 | 26 | NO | YES |
CVE-2011-3684MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Tembria Server Monitor before 6.0.5 Build 2252 allow remote attackers to inject arbitrary web script or HTML via (1) the site | Sep 27, 2011 | 4.3 | 17 | NO | NO |
Tembria Server Monitor before 6.0.5 Build 2252 uses a substitution cipher to encrypt application credentials, which allows local users to obtain sensitive information by leveraging | Sep 27, 2011 | 1.9 | 12 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tembria.
Media articles that mention a CVE ID that affects a product developed by Tembria — matched by CVE ID, not by vendor name.