Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-50619 Vulnerabilities in the My Account and User Management components in CIPPlanner CIPAce before 9.17 allows attackers to escalate their access levels. A… Cipace 9.17+ Fix from $1,9502026-02-11 HIGH 7.5 CVE-2024-50617 Vulnerabilities in the File Download and Get File handler components in CIPPlanner CIPAce before 9.17 allow attackers to download unauthorized files.… Cipace 9.17+ Fix from $1,9502026-02-11 HIGH 8.8 CVE-2024-50620 Unrestricted Upload of File with Dangerous Type vulnerabilities exist in the rich text editor and document manage components in CIPPlanner CIPAce bef… Cipace 9.17+ Fix from $1,9502026-02-11 CRITICAL 9.8 CVE-2020-11586 An XXE issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that contains malicious XM… Cipace 9.1+ Fix from $2,3002020-04-06 HIGH 7.5 CVE-2020-11587 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and get the content of ETL Pro… Cipace 9.1+ Fix from $1,9502020-04-06 CRITICAL 9.8 CVE-2020-11597 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP POST request and inject SQL statement… Cipace 9.1+ Fix from $2,3002020-04-06 CRITICAL 9.8 CVE-2020-11598 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. Upload.ashx allows remote attackers to execute arbitrary code by uploading and exe… Cipace 9.1+ Fix from $2,3002020-04-06 HIGH 7.5 CVE-2020-11589 An Insecure Direct Object Reference issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make a GET reques… Cipace 9.1+ Fix from $1,9502020-04-06 HIGH 7.5 CVE-2020-11592 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and get the columns of a speci… Cipace 9.1+ Fix from $1,9502020-04-06 HIGH 7.5 CVE-2020-11593 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP POST request with injected HTML data … Cipace 9.1+ Fix from $1,9502020-04-06 HIGH 7.5 CVE-2020-11594 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that causes a stack error to b… Cipace 9.1+ Fix from $1,9502020-04-06 HIGH 7.5 CVE-2020-11595 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and obtain the upload folder p… Cipace 9.1+ Fix from $1,9502020-04-06 HIGH 7.5 CVE-2020-11596 A Directory Traversal issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make HTTP GET requests to a cer… Cipace 9.1+ Fix from $1,9502020-04-06 HIGH 7.5 CVE-2020-11599 An issue was discovered in CIPPlanner CIPAce 6.80 Build 2016031401. GetDistributedPOP3 allows attackers to obtain the username and password of the SM… Cipace 9.1+ Fix from $1,9502020-04-06 MEDIUM 5.3 CVE-2020-11590 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP GET request to HealthPage.aspx and ob… Cipace 9.1+ Fix from $1,6002020-04-06 MEDIUM 5.3 CVE-2020-11591 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and obtain the full applicatio… Cipace 9.1+ Fix from $1,6002020-04-06 MEDIUM 5.3 CVE-2020-11588 An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP GET request to two files that contain… Cipace 9.1+ Fix from $1,6002020-04-06