Vulnerabilities in Bentley

209 results
Vexday analysis

O portfólio de vulnerabilidades da Bentley apresenta um perfil de risco relativamente contido: entre as 209 CVEs catalogadas, nenhuma está em exploração ativa no catálogo KEV da CISA, nenhuma atinge severidade crítica e não há provas de conceito públicas conhecidas, situando a taxa de exploração ativa abaixo da média geral do catálogo. O tipo de falha mais recorrente é CWE-125 (leitura fora dos limites de buffer), que tipicamente abre espaço para vazamento de informações ou instabilidade de aplicações. A CVE de maior relevância no momento, CVE-2021-46575, registra um score EPSS de 0,0222, indicando probabilidade baixa de exploração ativa no curto prazo. A ausência de novos registros nos últimos 90 dias sugere estabilidade recente, mas equipes de segurança devem monitorar continuamente o histórico de falhas de memória para garantir que correções pendentes estejam aplicadas.

CVE-2021-46630LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User inteEPSS 1.5%CVE-2021-46615LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.5%CVE-2021-46620LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.5%CVE-2021-46632LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User inteEPSS 1.5%CVE-2021-46624LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User inteEPSS 1.5%CVE-2021-46616LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.5%CVE-2021-46618LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.5%CVE-2021-46629LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User inteEPSS 1.5%CVE-2021-46599LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.5%CVE-2021-46654LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User inteEPSS 1.5%CVE-2021-46637LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.5%CVE-2021-46642LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 10.15.0.75. User inteEPSS 1.5%CVE-2021-46608LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16EPSS 1.4%CVE-2022-28316HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.34. EPSS 1.0%CVE-2022-28303HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.16.02.022. User interactioEPSS 1.0%CVE-2022-28310HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.034.EPSS 1.0%CVE-2022-28314HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.34. EPSS 1.0%CVE-2022-28301HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.34. EPSS 1.0%CVE-2022-28300HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation 10.16.02.034 CONNECT.EPSS 1.0%CVE-2022-28307HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.16.02.022. User interactioEPSS 1.0%