Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Logicaldoc HIGH 7.5
CVE-2019-25258

LogicalDOC Enterprise 7.7.4 contains multiple post-authentication file disclosure vulnerabilities that allow attackers to read arbitrary files throug…

No fix yet
Fix from $1,950 2025-12-24
Logicaldoc MEDIUM 6.1
CVE-2024-12020

There is a reflected cross-site scripting (XSS) within JSP files used to control application appearance. An unauthenticated attacker could deceive a …

Mitigation only
Fix from $1,600 2025-03-14
Logicaldoc MEDIUM 5.4
CVE-2022-47418

LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the do…

No fix yet
Fix from $1,600 2023-02-07
Logicaldoc MEDIUM 5.4
CVE-2022-47415

LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the in…

No fix yet
Fix from $1,600 2023-02-07
Logicaldoc MEDIUM 5.4
CVE-2022-47416

LogicalDOC Enterprise is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the in-app chat system.

No fix yet
Fix from $1,600 2023-02-07
Logicaldoc MEDIUM 5.4
CVE-2022-47417

LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the do…

No fix yet
Fix from $1,600 2023-02-07
Logicaldoc HIGH 7.8
CVE-2020-13542

A local privilege elevation vulnerability exists in the file system permissions of LogicalDoc 8.5.1 installation. Depending on the vector chosen, an …

No fix yet
Fix from $1,950 2020-12-03