Skip to content
Noroxi

extensis records

10 published records for vendor extensis.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

10 records
  • CVE-2013-3944
    39Monitor

    Stack-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via

    HighCVSS 7.8No exploitEPSS 28%

    extensis · mrsidJan 2, 2020

  • An unrestricted file upload vulnerability in the Backup/Restore Archive component of Extensis Portfolio v4.0 allows remote attackers to exec

    HighCVSS 8.8No exploitEPSS 3%

    extensis · portfolioMar 1, 2022

  • An unrestricted file upload vulnerability in the FileTransferServlet component of Extensis Portfolio v4.0 allows remote attackers to execute

    HighCVSS 8.8No exploitEPSS 2%

    extensis · portfolioMar 1, 2022

  • Extensis Portfolio v4.0 was discovered to contain hardcoded credentials which allows attackers to gain administrator privileges.

    HighCVSS 8.8No exploitEPSS 1%

    extensis · portfolioMar 1, 2022

  • Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the Catalog Asset Upload funct

    HighCVSS 8.8No exploitEPSS 1%

    extensis · portfolioMar 1, 2022

  • Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the component AdminFileTransfe

    HighCVSS 8.8No exploitEPSS 1%

    extensis · portfolioMar 1, 2022

  • CVE-2013-3946
    32Monitor

    Heap-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a

    HighCVSS 7.8No exploitEPSS 2%

    extensis · mrsidJan 2, 2020

  • CVE-2013-3945
    32Monitor

    The MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a nband tag.

    HighCVSS 7.8No exploitEPSS 2%

    extensis · mrsidJan 2, 2020

  • netpub/server.np in Extensis Portfolio NetPublish has XSS in the quickfind parameter, aka Open Bug Bounty ID OBB-290447.

    MediumCVSS 6.1No exploitEPSS 1%

    extensis · portfolio netpublishDec 31, 2017

  • CVE-2005-4510
    21Monitor

    Directory traversal vulnerability in server.np in NetPublish Server 7 allows remote attackers to read arbitrary files via "../" sequences in

    MediumCVSS 5.0Proof of conceptEPSS 3%

    extensis · netpublish serverDec 22, 2005