jivesoftware records
2 published records for vendor jivesoftware.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
33Monitor | CVE-2021-45968Proof of concept | An issue was discovered in xmppserver jar in the XMPP Server component of the JIve platform, as used in Pascom Cloud Phone System before 7.2pascom · cloud phone system · CWE-918 | High7.5 | — | 10.4% | Mar 18, 2022 |
24Monitor | CVE-2016-4334No exploit | Jive before 2016.3.1 has an open redirect from the external-link.jspa page.jivesoftware · jive · CWE-601 | Medium6.1 | — | 0.8% | Apr 9, 2017 |
- CVE-2021-4596833Monitor
An issue was discovered in xmppserver jar in the XMPP Server component of the JIve platform, as used in Pascom Cloud Phone System before 7.2
HighCVSS 7.5Proof of conceptEPSS 10%pascom · cloud phone systemMar 18, 2022
- CVE-2016-433424Monitor
Jive before 2016.3.1 has an open redirect from the external-link.jspa page.
MediumCVSS 6.1No exploitEPSS 1%jivesoftware · jiveApr 9, 2017