Meta tags:
description= SafeBase monitors your security practices to enable you to win enterprise deals.;
Headings (most frequently used words):
display, webkit, font, security, next, public, flex, margin, align, center, color, 000000, box, ms, compliance, trust, portal, flexbox, size, 20px, style, normal, line, height, 30px, smoothing, antialiased, left, and, items, data, sketchup, 13o7eu2, block, 11vf6hw, nbudrc, 12px, overview, 6sgiei, 0px, trimble, is, reviewed, trusted, by, 70qvj9, documents, product, reports, self, assessments, app, esg, insurance, privacy, access, control, infrastructure, endpoint, network, corporate, policies, subprocessors, updates, advisory, cross, site, scripting, in, dynamic, components,
Text of the page (most frequently used words):
compliance (17), #security (15), the (14), and (13), view (12), data (12), sketchup (10), more (10), #trimble (8), iso (8), trust (7), soc (7), your (7), portal (6), type (6), iec (6), for (5), privacy (5), cyber (5), our (4), dynamic (4), components (4), access (4), 27001 (4), essentials (4), information (4), desktop (3), vulnerability (3), version (3), extension (3), may (3), code (3), product (3), versions (3), that (3), you (3), policy (3), cookies (2), release (2), notes (2), this (2), discovered (2), thank (2), their (2), disclosure (2), 2026 (2), include (2), impact (2), file (2), local (2), prior (2), cross (2), site (2), scripting (2), response (2), policies (2), protection (2), management (2), endpoint (2), anti (2), logging (2), insurance (2), audit (2), whitepaper (2), reports (2), all (2), documents (2), nist (2), 800 (2), 171 (2), rev (2), 27701 (2), 2022 (2), soa (2), 9001 (2), 2015 (2), govramp (2), cydr (2), plus (2), download (2), trusted (2), integrity (2), certifications (2), transparency (2), settings, built, references, https, help, com, 202613, acknowledgments, was, reported, through, bug, bounty, program, bugcrowd, would, like, researcher, professional, assistance, securing, products, remediation, mitigation, users, should, update, installation, later, updating, application, will, automatically, patched, successful, exploitation, requires, user, interact, with, malicious, skp, remote, execution, rce, via, activex, exfiltration, windows, mac, description, xss, within, component, options, window, has, been, identified, allow, attacker, execute, arbitrary, exfiltrate, files, impacted, vulnerabilities, copy, link, advisory, subscribe, updates, subprocessors, report, issue, think, have, please, send, note, incident, classification, acceptable, use, employee, training, email, asset, practices, corporate, ids, ips, firewall, loss, prevention, network, detection, dns, filtering, disk, encryption, azure, ddos, amazon, web, services, infrastructure, password, control, officer, oversight, customer, rights, environmental, stewardship, diversity, equity, inclusion, modern, slavery, esg, credential, analysis, responsible, app, erasure, backups, monitoring, hecvat, full, caiq, self, assessments, integrations, bulk, private, public, baker, tilly, reviewed, wcag, cmmc, certified, ramp, together, can, achieve, excellence, uphold, highest, standards, choosing, partner, explore, gain, deeper, understanding, how, ensures, confidentiality, availability, from, detailed, attestations, believe, every, step, way, welcome, resource, including, controls, core, everything, which, testament, commitment, customers, understand, importance, safeguarding, while, providing, innovative, solutions, empower, business, why, established, one, stop, destination, overview, get, ask, sensitive, start, review,
Text of the page (random words):
trimble trust portal trust portal start your security review view download sensitive information ask for information get access overview welcome to trimble s trust portal your resource for product security privacy and compliance information including our security controls and certifications at trimble trust is at the core of everything we do which is a testament to our commitment to customers we understand the importance of safeguarding your data while providing innovative solutions that empower your business that s why we ve established the trimble trust portal your one stop destination for transparency security and compliance information explore our trust portal to gain a deeper understanding of how trimble ensures the confidentiality integrity and availability of your data from detailed privacy policies to certifications and attestations we believe in transparency every step of the way together we can achieve excellence in data protection and uphold the highest standards of integrity and compliance thank you for choosing trimble as your trusted partner compliance cyber essentials cyber essentials plus cydr iso iec 27001 2022 iso iec 27001 soa iso iec 27701 iso 9001 2015 nist 800 171 rev 2 soc 1 type 1 soc 1 type 2 soc 2 type 1 soc 2 type 2 soc 3 govramp tx ramp cmmc certified wcag trimble is reviewed and trusted by baker tilly us documents all public private bulk download reports security whitepaper compliance cyber essentials compliance cyber essentials plus compliance cydr compliance govramp compliance iso 9001 2015 compliance iso iec 27001 soa compliance iso iec 27001 2022 compliance iso iec 27701 compliance nist 800 171 rev 2 compliance soc 1 type 1 compliance soc 1 type 2 view all documents product security audit logging integrations data security view more reports security whitepaper self assessments caiq hecvat full data security access monitoring data backups data erasure view more app security responsible disclosure code analysis credential management view more esg anti modern slavery diversity equity and inclusion environmental stewardship view more compliance and insurance customer audit rights cyber insurance privacy oversight view more data privacy cookies data privacy officer access control data access logging password security infrastructure amazon web services anti ddos azure view more endpoint security disk encryption dns filtering endpoint detection response view more network security data loss prevention firewall ids ips view more corporate compliance asset management practices email protection employee training view more policies acceptable use policy data classification policy incident response policy view more if you think you may have discovered a vulnerability please send us a note report issue subprocessors trust portal updates subscribe sketchup security advisory cross site scripting in sketchup dynamic components copy link vulnerabilities description cross site scripting xss within the component options window has been identified in the sketchup dynamic components extension that may allow an attacker to execute arbitrary code or exfiltrate local files impacted versions product version sketchup desktop windows mac versions prior to 2026 1 3 dynamic components extension versions prior to 1 8 5 impact successful exploitation of this vulnerability requires a user to interact with a malicious sketchup file skp the impact may include remote code execution rce via activex local file exfiltration remediation and mitigation users should update their sketchup desktop installation to version 2026 1 3 or later updating the sketchup application will automatically include the patched version of the dynamic components extension acknowledgments this vulnerability was discovered and reported through the trimble bug bounty program on bugcrowd we would like to thank the security researcher for their professional disclosure and assistance in securing our products references sketchup release notes https help sketchup com en release notes sketchup desktop 202613 built on cookies settings
|