Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2024-28803 Cross-site scripting (XSS) vulnerability in Italtel S.p.A. i-MCS NFV v.12.1.0-20211215 allows unauthenticated remote attackers to inject arbitrary we… I Mcs Nfv No fix yet Fix from $1,6002025-03-13 HIGH 8.8 CVE-2024-31842 An issue was discovered in Italtel Embrace 1.6.4. The web application inserts the access token of an authenticated user inside GET requests. The quer… Embrace Mitigation only Fix from $1,9502024-08-20 HIGH 7.5 CVE-2024-28806 An issue was discovered in Italtel i-MCS NFV 12.1.0-20211215. Remote unauthenticated attackers can upload files at an arbitrary path. I Mcs Nfv Mitigation only Fix from $1,9502024-07-29 CRITICAL 9.1 CVE-2024-28805 An issue was discovered in Italtel i-MCS NFV 12.1.0-20211215. There is Incorrect Access Control. I Mcs Nfv No fix yet Fix from $2,3002024-07-29 HIGH 7.1 CVE-2024-28804 An issue was discovered in Italtel i-MCS NFV 12.1.0-20211215. Stored Cross-site scripting (XSS) can occur via POST. I Mcs Nfv No fix yet Fix from $1,9502024-07-29 MEDIUM 6.1 CVE-2024-31847 An issue was discovered in Italtel Embrace 1.6.4. A stored cross-site scripting (XSS) vulnerability allows authenticated and unauthenticated remote a… Embrace No fix yet Fix from $1,6002024-05-21 MEDIUM 5.3 CVE-2024-31844 An issue was discovered in Italtel Embrace 1.6.4. The server does not properly handle application errors. In some cases, this leads to a disclosure o… Embrace No fix yet Fix from $1,6002024-05-21 MEDIUM 5.3 CVE-2024-31845 An issue was discovered in Italtel Embrace 1.6.4. The product does not neutralize or incorrectly neutralizes output that is written to logs. The web … Embrace No fix yet Fix from $1,6002024-05-21 MEDIUM 6.5 CVE-2024-31840 An issue was discovered in Italtel Embrace 1.6.4. The web application inserts cleartext passwords in the HTML source code. An authenticated user is a… Embrace No fix yet Fix from $1,6002024-05-21 HIGH 7.5 CVE-2024-31841 An issue was discovered in Italtel Embrace 1.6.4. The web server fails to sanitize input data, allowing remote unauthenticated attackers to read arbi… Embrace No fix yet Fix from $1,9502024-04-19 HIGH 7.5 CVE-2024-31846 An issue was discovered in Italtel Embrace 1.6.4. The web application does not restrict or incorrectly restricts access to a resource from an unautho… Embrace No fix yet Fix from $1,9502024-04-19 CRITICAL 9.1 CVE-2022-39811 Italtel NetMatch-S CI 5.2.0-20211008 has incorrect Access Control under NMSCI-WebGui/advancedsettings.jsp and NMSCIWebGui/SaveFileUploader. By not ve… Netmatch S Ci No fix yet Fix from $2,3002023-01-27 HIGH 7.5 CVE-2022-39812 Italtel NetMatch-S CI 5.2.0-20211008 allows Absolute Path Traversal under NMSCI-WebGui/SaveFileUploader. An unauthenticated user can upload files to … Netmatch S Ci No fix yet Fix from $1,9502023-01-27 MEDIUM 6.1 CVE-2022-39813 Italtel NetMatch-S CI 5.2.0-20211008 allows Multiple Reflected/Stored XSS issues under NMSCIWebGui/j_security_check via the j_username parameter, or … Netmatch S Ci No fix yet Fix from $1,6002023-01-27