Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Net Back Office MEDIUM 6.5
CVE-2024-47657

This vulnerability exists in the Shilpi Net Back Office due to improper access controls on certain API endpoints. An authenticated remote attacker co…

Fix: 5.5.002+
Fix from $1,600 2024-10-04
Client Dashboard CRITICAL 9.8
CVE-2024-47656

This vulnerability exists in Shilpi Client Dashboard due to missing restrictions for incorrect login attempts on its API based login. A remote attack…

Fix: 9.7.0+
Fix from $2,300 2024-10-04
Client Dashboard HIGH 8.8
CVE-2024-47655

This vulnerability exists in the Shilpi Client Dashboard due to improper validation of files being uploaded other than the specified extension. An au…

Fix: 9.7.0+
Fix from $1,950 2024-10-04
Client Dashboard HIGH 8.1
CVE-2024-47652

This vulnerability exists in Shilpi Client Dashboard due to implementation of inadequate authentication mechanism in the login module wherein access …

Fix: 9.7.0+
Fix from $1,950 2024-10-04
Client Dashboard HIGH 7.5
CVE-2024-47654

This vulnerability exists in Shilpi Client Dashboard due to lack of rate limiting and Captcha protection for OTP requests in certain API endpoint. An…

Fix: 9.7.0+
Fix from $1,950 2024-10-04
Client Dashboard MEDIUM 6.5
CVE-2024-47653

This vulnerability exists in Shilpi Client Dashboard due to lack of authorization for modification and cancellation requests through certain API endp…

Fix: 9.7.0+
Fix from $1,600 2024-10-04
Capexweb HIGH 7.5
CVE-2011-5031

Multiple SQL injection vulnerabilities in servlet/capexweb.parentvalidatepassword in cApexWEB 1.1 allow remote attackers to execute arbitrary SQL com…

No fix yet
Fix from $1,950 2011-12-29