Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Portfolio HIGH 8.8
CVE-2022-24251

Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the Catalog Asset Upload function.

Mitigation only
Fix from $1,950 2022-03-01
Portfolio HIGH 8.8
CVE-2022-24252

An unrestricted file upload vulnerability in the FileTransferServlet component of Extensis Portfolio v4.0 allows remote attackers to execute arbitrar…

Mitigation only
Fix from $1,950 2022-03-01
Portfolio HIGH 8.8
CVE-2022-24253

Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the component AdminFileTransferServlet.

Mitigation only
Fix from $1,950 2022-03-01
Portfolio HIGH 8.8
CVE-2022-24254

An unrestricted file upload vulnerability in the Backup/Restore Archive component of Extensis Portfolio v4.0 allows remote attackers to execute arbit…

Mitigation only
Fix from $1,950 2022-03-01
Portfolio HIGH 8.8
CVE-2022-24255

Extensis Portfolio v4.0 was discovered to contain hardcoded credentials which allows attackers to gain administrator privileges.

Mitigation only
Fix from $1,950 2022-03-01
Mrsid HIGH 7.8
CVE-2013-3944EPSS 28%

Stack-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via an IMAGE …

Fix: 4.37+
Fix from $1,950 2020-01-02
Mrsid HIGH 7.8
CVE-2013-3945

The MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a nband tag.

Fix: 4.37+
Fix from $1,950 2020-01-02
Mrsid HIGH 7.8
CVE-2013-3946

Heap-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a levels h…

Fix: 4.37+
Fix from $1,950 2020-01-02
Portfolio Netpublish MEDIUM 6.1
CVE-2017-18006

netpub/server.np in Extensis Portfolio NetPublish has XSS in the quickfind parameter, aka Open Bug Bounty ID OBB-290447.

Mitigation only
Fix from $1,600 2018-01-01
Netpublish Server MEDIUM 5.0
CVE-2005-4510

Directory traversal vulnerability in server.np in NetPublish Server 7 allows remote attackers to read arbitrary files via "../" sequences in the temp…

Patch available
Fix from $1,600 2005-12-23