3.8

CVSS3.1

CVE-2023-42242 -

An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQL Injection in a GET parameter of /monitor/s_terminal.php.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:34 p.m.

7.5

CVSS3.1

CVE-2023-42225 -

Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via the Attachment/DownloadTempFile function.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 5:43 p.m.

6.1

CVSS3.1

CVE-2023-42233 -

Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Cross Site Scripting (XSS) via the Filter/FilterEditor function.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 5:44 p.m.

9.1

CVSS3.1

CVE-2024-46310 -

Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary user data via exposed API endpoint

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 16, 2025, 6:15 p.m.

3.8

CVSS3.1

CVE-2023-42238 -

An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQL Injection in multiple POST parameters of /vam/vam_eps.php.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:35 p.m.

8.8

CVSS3.1

CVE-2023-42244 -

An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQL Injection in multiple POST parameters of /vam/vam_visits.php.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:34 p.m.

9.9

CVSS3.1

CVE-2024-46479 -

Venki Supravizio BPM through 18.0.1 was discovered to contain an arbitrary file upload vulnerability. An authenticated attacker may upload a malicious file, leading to remote code execution.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 7, 2025, 4:49 p.m.

6.5

CVSS3.1

CVE-2024-54999 -

MonicaHQ v4.1.2 was discovered to contain a Client-Side Injection vulnerability via the last_name parameter the General Information module.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 7, 2025, 4:49 p.m.

7.5

CVSS3.1

CVE-2023-42226 -

Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via Email/SaveAttachment function.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 5:43 p.m.

6.1

CVSS3.1

CVE-2023-42249 -

Selesta Visual Access Manager < 4.42.2 is vulnerable to Cross Site Scripting (XSS) via vam/vam_visits.php.

๐Ÿ“… Published: Jan. 13, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:34 p.m.
Total resulsts: 343944
Page 6649 of 34,395
ยซ previous page ยป next page
Filters