Wallix develops privileged-access and bastion-host management products, with observed vulnerabilities concentrating in its Bastion and Bastion Access Manager appliances around authentication bypasses, improper access controls, and sensitive information exposure. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wallix over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-23592HIGH WALLIX Access Manager 3.x through 4.0.x allows a remote attacker to access sensitive information. | Feb 9, 2023 | 7.5 | 23 | NO | NO |
CVE-2023-49961HIGH WALLIX Bastion 7.x, 8.x, 9.x and 10.x and WALLIX Access Manager 3.x and 4.x have Incorrect Access Control which can lead to sensitive data exposure. | Jan 8, 2024 | 7.5 | 21 | NO | NO |
CVE-2023-46319HIGH WALLIX Bastion 9.x before 9.0.9 and 10.x before 10.0.5 allows unauthenticated access to sensitive information by bypassing access control on a network access administration web int | Oct 23, 2023 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wallix.
Media articles that mention a CVE ID that affects a product developed by Wallix — matched by CVE ID, not by vendor name.