Skip to content
Noroxi

compassplus records

4 published records for vendor compassplus.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

4 records
  • /exec in TranzWare e-Commerce Payment Gateway (TWEC PG) before 3.1.27.5 had a vulnerability in its XML parser.

    HighCVSS 7.5No exploitEPSS 1%

    compassplus · tranzware e-commerce payment gatewayMar 19, 2021

  • TranzWare (POI) FIMI before 4.2.20.4.2 allows login_tw.php reflected Cross-Site Scripting (XSS).

    MediumCVSS 6.1No exploitEPSS 1%

    compassplus · tranzware fimiMar 18, 2021

  • A Header Injection vulnerability exists in Compass Plus TranzWare Online FIMI Web Interface Tranzware Online (TWO) 5.3.33.3 F38 and FIMI 4.2

    MediumCVSS 6.1No exploitEPSS 1%

    compassplus · tranzware onlineFeb 14, 2022

  • index.jsp in TranzWare e-Commerce Payment Gateway (TWEC PG) before 3.1.27.5 had a Stored cross-site scripting (XSS) vulnerability

    MediumCVSS 6.1No exploitEPSS 1%

    compassplus · tranzware e-commerce payment gatewayMar 19, 2021