Skip to content
Noroxi

groupsession records

20 published records for vendor groupsession.

All records

20 records
  • Incorrect permission assignment for critical resource vulnerability in GroupSession Free edition ver5.1.1 and earlier, GroupSession byCloud

    HighCVSS 7.5No exploitEPSS 1%

    groupsession · groupsessionDec 24, 2021

  • Path traversal vulnerability in GroupSession Free edition ver5.1.1 and earlier, GroupSession byCloud ver5.1.1 and earlier, and GroupSession

    MediumCVSS 6.8No exploitEPSS 1%

    groupsession · groupsessionDec 24, 2021

  • GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, and GroupSession ZION prior to ver5.3.2.

    MediumCVSS 6.9No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • CVE-2017-2165
    26Monitor

    GroupSession versions 4.6.4 and earlier allows remote authenticated attackers to bypass access restrictions to obtain sensitive information

    MediumCVSS 6.5No exploitEPSS 1%

    groupsession · groupsessionJun 9, 2017

  • Open redirect vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, GroupSession byCloud

    MediumCVSS 6.1No exploitEPSS 1%

    groupsession · groupsessionJul 30, 2021

  • Open redirect vulnerability in GroupSession Free edition ver5.1.1 and earlier, GroupSession byCloud ver5.1.1 and earlier, and GroupSession Z

    MediumCVSS 6.1No exploitEPSS 1%

    groupsession · groupsessionDec 24, 2021

  • CVE-2017-2166
    24Monitor

    Open redirect vulnerability in GroupSession version 4.7.0 and earlier allows an attacker to redirect users to arbitrary web sites and conduc

    MediumCVSS 6.1No exploitEPSS 1%

    groupsession · groupsessionJan 26, 2018

  • In GroupSession, a Circular notice can be created with its memo field non-editable, but the authorization check is improperly implemented.

    MediumCVSS 5.3No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • SQL Injection vulnerability exists in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, and GroupSession

    MediumCVSS 5.3No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • In GroupSession Free edition prior to ver5.7.1, GroupSession byCloud prior to ver5.7.1, and GroupSession ZION prior to ver5.7.1, "External p

    MediumCVSS 5.1No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Stored cross-site scripting vulnerability exists in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, and

    MediumCVSS 5.1No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Reflected cross-site scripting vulnerability exists in GroupSession Free edition prior to ver5.7.1, GroupSession byCloud prior to ver5.7.1,

    MediumCVSS 5.1No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Reflected cross-site scripting vulnerability exists in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3,

    MediumCVSS 5.1No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Cross-site request forgery vulnerability exists in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, and

    MediumCVSS 5.1No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Cross-site scripting vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, GroupSession b

    MediumCVSS 4.8No exploitEPSS 1%

    groupsession · groupsessionJul 30, 2021

  • Cross-site scripting vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, GroupSession b

    MediumCVSS 4.8No exploitEPSS 1%

    groupsession · groupsessionJul 30, 2021

  • Stored cross-site scripting vulnerabilities exist in GroupSession Free edition prior to ver5.7.1, GroupSession byCloud prior to ver5.7.1, an

    MediumCVSS 4.8No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Stored cross-site scripting vulnerabilities exist in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, an

    MediumCVSS 4.8No exploitEPSS 0%

    groupsession · groupsessionDec 12, 2025

  • Server-side request forgery (SSRF) vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0,

    MediumCVSS 4.3No exploitEPSS 1%

    groupsession · groupsessionJul 30, 2021

  • Cross-site request forgery (CSRF) vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, G

    MediumCVSS 4.3No exploitEPSS 0%

    groupsession · groupsessionJul 30, 2021