Skip to content
Noroxi

basware records

7 published records for vendor basware.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2015-6742
    26Monitor

    Basware Banking (Maksuliikenne) before 8.90.07.X uses a hardcoded password for the ANCO account, which allows remote authenticated users to

    MediumCVSS 6.5No exploitEPSS 1%

    basware · bankingAug 31, 2015

  • CVE-2015-6743
    26Monitor

    Basware Banking (Maksuliikenne) 8.90.07.X uses a hardcoded password for an unspecified account, which allows remote authenticated users to b

    MediumCVSS 6.5No exploitEPSS 1%

    basware · bankingAug 31, 2015

  • CVE-2015-0943
    23Monitor

    Basware Banking (Maksuliikenne) before 9.10.0.0 does not encrypt communication between the client and the backend server, which allows man-i

    MediumCVSS 5.8No exploitEPSS 1%

    basware · bankingAug 31, 2015

  • CVE-2015-6747
    20Monitor

    Basware Banking (Maksuliikenne) 8.90.07.X does not properly prevent access to private keys, which allows remote attackers to spoof communica

    MediumCVSS 5.0No exploitEPSS 1%

    basware · bankingAug 31, 2015

  • CVE-2015-6745
    18Monitor

    Basware Banking (Maksuliikenne) 8.90.07.X relies on the client to enforce account locking, which allows local users to bypass that security

    MediumCVSS 4.6No exploitEPSS 0%

    basware · bankingAug 31, 2015

  • CVE-2015-6744
    17Monitor

    Basware Banking (Maksuliikenne) before 8.90.07.X relies on the client to enforce (1) login verification, (2) audit trail creation, and (3) a

    MediumCVSS 4.3No exploitEPSS 1%

    basware · bankingAug 31, 2015

  • Basware Banking (Maksuliikenne) before 8.90.07.X stores private keys in plaintext in the SQL database, which allows remote attackers to spoo

    LowCVSS 2.1No exploitEPSS 1%

    basware · bankingAug 31, 2015