Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Axxon One CRITICAL 9.8
CVE-2025-10226

Dependency on Vulnerable Third-Party Component (CWE-1395) in the PostgreSQL backend in AxxonSoft Axxon One (C-Werk) 2.0.8 and earlier on Windows and …

Fix: after 2.0.8
Fix from $2,300 2025-09-10
Axxon One HIGH 8.1
CVE-2025-10223

Insufficient Session Expiration (CWE-613) in the Web Admin Panel in AxxonSoft Axxon One (C-Werk) prior to 2.0.3 on Windows allows a local or remote a…

Fix: after 2.0.2
Fix from $1,950 2025-09-10
Axxon One HIGH 7.5
CVE-2025-10225

Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119) in the OpenSSL-based session module in AxxonSoft Axxon One (C-Werk)…

Fix: after 2.0.6
Fix from $1,950 2025-09-10
Axxon One HIGH 7.1
CVE-2025-10224

Improper Authentication (CWE-287) in the LDAP authentication engine in AxxonSoft Axxon One (C-Werk) 2.0.2 and earlier on Windows allows a remote auth…

Fix: after 2.0.2
Fix from $1,950 2025-09-10
Axxon One CRITICAL 9.8
CVE-2025-10220

Use of Unmaintained Third Party Components (CWE-1104) in the NuGet dependency components in AxxonSoft Axxon One VMS 2.0.0 through 2.0.4 on Windows al…

Fix: after 2.0.4
Fix from $2,300 2025-09-10
Axxon One MEDIUM 5.5
CVE-2025-10221

Insertion of Sensitive Information into Log File (CWE-532) in the ARP Agent component in AxxonSoft Axxon One / AxxonNet / C-WerkNet 2.0.4 and earlier…

Fix: after 2.0.4
Fix from $1,600 2025-09-10
Next HIGH 7.5
CVE-2018-7467EPSS 10%

AxxonSoft Axxon Next has Directory Traversal via an initial /css//..%2f substring in a URI.

Mitigation only
Fix from $1,950 2018-02-27