Products: 1
Vulnerabilities: 11
Known Exploited: 0
2
Critical Level Threats
3
High Level Threats
6
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2019-15089
An issue was discovered in PRiSE adAS 1.7.0. Forms have no CSRF protection, letting an attacker execute actions as the administrator.
Last Modified: Nov 21, 2024
Published: Sep 20, 2019
CVE-2019-15088
An issue was discovered in PRiSE adAS 1.7.0. Password hashes are compared using the equality operator. Thus, under specific circumstances, it is possible to bypass login authentication.
Last Modified: Nov 21, 2024
Published: Sep 20, 2019
CVE-2019-15087
An issue was discovered in PRiSE adAS 1.7.0. An authenticated user can change the function used to hash passwords to any function, leading to remote code execution.
Last Modified: Nov 21, 2024
Published: Sep 20, 2019
CVE-2019-15086
An issue was discovered in PRiSE adAS 1.7.0. The newentityID parameter is not properly escaped, leading to a reflected XSS in the error message.
Last Modified: Nov 21, 2024
Published: Sep 20, 2019
CVE-2019-15085
An issue was discovered in PRiSE adAS 1.7.0. The current database password is embedded in the change password form.
Last Modified: Nov 21, 2024
Published: Sep 20, 2019
Items Per Page
