Skip to content
Noroxi

iris records

7 published records for vendor iris.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 21
  2. 22

Bar: total · dark part: CISA KEV.

Attack profile

All records

7 records
  • An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to change t

    HighCVSS 8.8No exploitEPSS 2%

    iris · star practice managementJan 29, 2021

  • An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access L

    HighCVSS 8.8No exploitEPSS 1%

    iris · star practice managementJan 29, 2021

  • A Cross-Site Request Forgery (CSRF) vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an attacker to change

    HighCVSS 8.8No exploitEPSS 1%

    iris · starJan 29, 2021

  • An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access t

    MediumCVSS 6.5No exploitEPSS 1%

    iris · star practice managementJan 29, 2021

  • An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access W

    MediumCVSS 6.5No exploitEPSS 1%

    iris · star practice managementJan 29, 2021

  • An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access d

    MediumCVSS 6.5No exploitEPSS 1%

    iris · star practice managementJan 29, 2021

  • ISAMS 22.2.3.2 is prone to stored Cross-site Scripting (XSS) attack on the title field for groups, allowing an attacker to store a JavaScrip

    MediumCVSS 5.4No exploitEPSS 1%

    iris · isamsSep 27, 2022