Products: 3
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    4
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-4528

    JSCAPE MFT Server Unsafe Deserialization on Management Port

    Last Modified: Apr 23, 2025
    Published: Sep 07, 2023

    CVE-2021-26710

    A cross-site scripting (XSS) issue in the login panel in Redwood Report2Web 4.3.4.5 and 4.5.3 allows remote attackers to inject JavaScript via the signIn.do urll parameter.

    Last Modified: Nov 21, 2024
    Published: Feb 05, 2021

    CVE-2021-26711

    A frame-injection issue in the online help in Redwood Report2Web 4.3.4.5 allows remote attackers to render an external resource inside a frame via the help/Online_Help/NetHelp/default.htm turl parameter.

    Last Modified: Nov 21, 2024
    Published: Feb 05, 2021

    CVE-2018-2401

    SAP Business Process Automation (BPA) By Redwood does not sufficiently validate an XML document accepted from an untrusted source resulting in an XML External Entity (XXE) vulnerability.

    Last Modified: Nov 21, 2024
    Published: Mar 14, 2018

    CVE-2018-2366

    SAP Business Process Automation (BPA) By Redwood, 9.0, 9.1, allows an attacker to exploit insufficient validation of path information provided by users, thus characters representing 'traverse to parent directory' are passed through to the file APIs.

    Last Modified: Nov 21, 2024
    Published: Mar 14, 2018
    Items Per Page
    Redwood Vulnerabilities & Security CVEs | CVE-DB