Skip to content
Noroxi

datev records

4 published records for vendor datev.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 23

Bar: total · dark part: CISA KEV.

Attack profile

All records

4 records
  • The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allo

    CriticalCVSS 10.0No exploitEPSS 6%

    datev · base systemFeb 26, 2010

  • CVE-2011-5158
    38Monitor

    Multiple untrusted search path vulnerabilities in the DMTGUI2.EXE and DvInesLogFileViewer.Exe components in DATEV Grundpaket Basis CD23.20 a

    CriticalCVSS 9.3No exploitEPSS 2%

    datev · grundpaket basisSep 7, 2012

  • A reflected cross-site scripting (XSS) vulnerability in DATEV eG Personal-Management System Comfort/Comfort Plus v15.1.0 to v16.1.1 P4 allow

    MediumCVSS 6.1No exploitEPSS 1%

    datev · eg personal-management system comfort\/comfort plusJun 22, 2023

  • CVE-2003-1169
    18Monitor

    DATEV Nutzungskontrolle 2.1 and 2.2 has insecure write permissions for critical registry keys, which allows local users to bypass access res

    MediumCVSS 4.6Proof of conceptEPSS 1%

    datev · nutzungskontrolleDec 31, 2003