Vaultize
Vaultize Enterprise File Sharing: vulnerabilidades y CVE
Vaultize Enterprise File Sharing tiene 8 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE8
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2018-10213 | Media (5.4) | 0.61% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is XSS in invitation mail received from a different user, who can modify the HTML in that mail before sending it. |
| CVE-2018-10212 | Media (5.4) | 0.64% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is improper authorization leading to creation of folders within another account via a modified device value. |
| CVE-2018-10211 | Media (5.3) | 1.0% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is improper authorization when listing the history of another user via a modified "vaultize_session_id" value in a cookie. |
| CVE-2018-10210 | Media (5.3) | 1.0% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. Enumeration of users is possible through the password-reset feature. |
| CVE-2018-10209 | Media (5.4) | 0.61% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is Stored XSS on the file or folder download pop-up via a crafted file or folder name. |
| CVE-2018-10208 | Media (6.1) | 0.80% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is anonymous reflected XSS on the error page via a /share/error?message= URI. |
| CVE-2018-10207 | Media (5.3) | 1.0% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. An attacker can exploit Missing Authorization on the FlexPaperViewer SWF reader, and export files that should have been restricted, via vectors… |
| CVE-2018-10206 | Media (5.4) | 0.61% | — | 25 abr 2018 | An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is Stored XSS via the optional message field of a file request. |