Sos-berlin

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    0
    Critical Level Threats
    1
    High Level Threats
    4
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-37272

    XSS vulnerability in JOC Cockpit branch 1.13

    Last Modified: Nov 21, 2024
    Published: Jul 13, 2023

    CVE-2020-12712

    A vulnerability based on insecure user/password encryption in the JOE (job editor) component of SOS JobScheduler 1.12 and 1.13 allows attackers to decrypt the user/password that is optionally stored with a user's profile.

    Last Modified: Nov 21, 2024
    Published: Jun 11, 2020

    CVE-2020-6855

    A large or infinite loop vulnerability in the JOC Cockpit component of SOS JobScheduler 1.11 and 1.13.2 allows attackers to parameterize housekeeping jobs in a way that exhausts system resources and results in a denial of service.

    Last Modified: Nov 21, 2024
    Published: Feb 06, 2020

    CVE-2020-6856

    An XML External Entity (XEE) vulnerability exists in the JOC Cockpit component of SOS JobScheduler 1.12 and 1.13.2 allows attackers to read files from the server via an entity declaration in any of the XML documents that are used to specify the run-time settings of jobs and orders.

    Last Modified: Nov 21, 2024
    Published: Feb 06, 2020

    CVE-2020-6854

    A cross-site scripting (XSS) vulnerability in the JOC Cockpit component of SOS JobScheduler 1.11 and 1.13.2 allows attackers to inject arbitrary web script or HTML via JSON properties available from the REST API.

    Last Modified: Nov 21, 2024
    Published: Feb 05, 2020
    Items Per Page