Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2019-25258 LogicalDOC Enterprise 7.7.4 contains multiple post-authentication file disclosure vulnerabilities that allow attackers to read arbitrary files throug… Logicaldoc No fix yet Fix from $1,9502025-12-24 MEDIUM 6.1 CVE-2024-12020 There is a reflected cross-site scripting (XSS) within JSP files used to control application appearance. An unauthenticated attacker could deceive a … Logicaldoc Mitigation only Fix from $1,6002025-03-14 MEDIUM 5.4 CVE-2022-47418 LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the do… Logicaldoc No fix yet Fix from $1,6002023-02-07 MEDIUM 5.4 CVE-2022-47415 LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the in… Logicaldoc No fix yet Fix from $1,6002023-02-07 MEDIUM 5.4 CVE-2022-47416 LogicalDOC Enterprise is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the in-app chat system. Logicaldoc No fix yet Fix from $1,6002023-02-07 MEDIUM 5.4 CVE-2022-47417 LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the do… Logicaldoc No fix yet Fix from $1,6002023-02-07 HIGH 7.8 CVE-2020-13542 A local privilege elevation vulnerability exists in the file system permissions of LogicalDoc 8.5.1 installation. Depending on the vector chosen, an … Logicaldoc No fix yet Fix from $1,9502020-12-03