Sipwise records
4 published records for vendor sipwise.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2021-31584No exploit | Sipwise C5 NGCP www_csc version 3.6.4 up to and including platform NGCP CE mr3.8.13 allows call/click2dial CSRF attacks for actions with admsipwise · next generation communication platform · CWE-352 | High8.8 | — | 0.9% | Apr 23, 2021 |
22Monitor | CVE-2024-28345No exploit | An issue discovered in Sipwise C5 NGCP Dashboard below mr11.5.1 allows a low privileged user to access the Journal endpoint by directly visisipwise · next generation communication platform | Medium5.5 | — | 0.4% | Apr 10, 2024 |
21Monitor | CVE-2021-31583No exploit | Sipwise C5 NGCP WWW Admin version 3.6.7 up to and including platform version NGCP CE 3.0 has multiple authenticated stored and reflected XSSsipwise · next generation communication platform · CWE-79 | Medium5.4 | — | 1.1% | Apr 23, 2021 |
12Monitor | CVE-2024-28344No exploit | An Open Redirect vulnerability was found in Sipwise C5 NGCP Dashboard below mr11.5.1.sipwise · next generation communication platform · CWE-601 | Low3.1 | — | 0.5% | Apr 10, 2024 |
- CVE-2021-3158435Monitor
Sipwise C5 NGCP www_csc version 3.6.4 up to and including platform NGCP CE mr3.8.13 allows call/click2dial CSRF attacks for actions with adm
HighCVSS 8.8No exploitEPSS 1%sipwise · next generation communication platformApr 23, 2021
- CVE-2024-2834522Monitor
An issue discovered in Sipwise C5 NGCP Dashboard below mr11.5.1 allows a low privileged user to access the Journal endpoint by directly visi
MediumCVSS 5.5No exploitEPSS 0%sipwise · next generation communication platformApr 10, 2024
- CVE-2021-3158321Monitor
Sipwise C5 NGCP WWW Admin version 3.6.7 up to and including platform version NGCP CE 3.0 has multiple authenticated stored and reflected XSS
MediumCVSS 5.4No exploitEPSS 1%sipwise · next generation communication platformApr 23, 2021
- CVE-2024-2834412Monitor
An Open Redirect vulnerability was found in Sipwise C5 NGCP Dashboard below mr11.5.1.
LowCVSS 3.1No exploitEPSS 0%sipwise · next generation communication platformApr 10, 2024