Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ozeki Ng Sms Gateway HIGH 7.2
CVE-2020-14030

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. It stores SMS messages in .NET serialized format on the filesystem. By generating (an…

Fix: after 4.17.6
Fix from $1,950 2020-09-30
Ozeki Ng Sms Gateway HIGH 8.8
CVE-2020-14022

Ozeki NG SMS Gateway 4.17.1 through 4.17.6 does not check the file type when bulk importing new contacts ("Import Contacts" functionality) from a fil…

Fix: after 4.17.6
Fix from $1,950 2020-09-22
Ozeki Ng Sms Gateway HIGH 8.8
CVE-2020-14025

Ozeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities. For example, an administrator, by following a link, can be tricked into making…

Fix: after 4.17.6
Fix from $1,950 2020-09-22
Ozeki Ng Sms Gateway HIGH 8.8
CVE-2020-14026

CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the Export Of Contacts feature in Ozeki NG SMS Gateway through 4.17.6 via a …

Fix: after 4.17.6
Fix from $1,950 2020-09-22
Ozeki Ng Sms Gateway HIGH 7.2
CVE-2020-14028

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. By leveraging a path traversal vulnerability in the Autoreply module's Script Name, a…

Fix: after 4.17.6
Fix from $1,950 2020-09-22
Ozeki Ng Sms Gateway HIGH 7.2
CVE-2020-14031

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The outbox functionality of the TXT File module can be used to delete all/most files …

Fix: after 4.17.6
Fix from $1,950 2020-09-22
Ozeki Ng Sms Gateway MEDIUM 6.1
CVE-2020-14024

Ozeki NG SMS Gateway through 4.17.6 has multiple authenticated stored and/or reflected XSS vulnerabilities via the (1) Receiver or Recipient field in…

Fix: after 4.17.6
Fix from $1,600 2020-09-22
Ozeki Ng Sms Gateway MEDIUM 5.3
CVE-2020-14027

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The database connection strings accept custom unsafe arguments, such as ENABLE_LOCAL_…

Fix: after 4.17.6
Fix from $1,600 2020-09-22
Ozeki Ng Sms Gateway HIGH 7.5
CVE-2020-14029

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe manner. This opens the applica…

Fix: after 4.17.6
Fix from $1,950 2020-09-18