Skip to content
Noroxi

LuxSoft records

10 published records for vendor luxsoft.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

10 records
  • In LuxSoft LuxCal Web Calendar before 5.2.0, an unauthenticated attacker can manipulate a POST request.

    CriticalCVSS 9.8No exploitEPSS 2%

    luxsoft · luxcalMay 24, 2022

  • In LuxSoft LuxCal Web Calendar before 5.2.0, an unauthenticated attacker can manipulate a cookie value.

    CriticalCVSS 9.8No exploitEPSS 2%

    luxsoft · luxcalMay 24, 2022

  • SQL injection vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior to 5.2.4L (SQLite version)

    CriticalCVSS 9.8No exploitEPSS 1%

    luxsoft · luxcal web calendarNov 20, 2023

  • The LuxCal Web Calendar prior to 5.3.3M (MySQL version) and prior to 5.3.3L (SQLite version) contains an SQL injection vulnerability in pdf.

    CriticalCVSS 9.8No exploitEPSS 0%

    luxsoft · luxcal web calendarFeb 17, 2025

  • The LuxCal Web Calendar prior to 5.3.3M (MySQL version) and prior to 5.3.3L (SQLite version) contains an SQL injection vulnerability in retr

    CriticalCVSS 9.8No exploitEPSS 0%

    luxsoft · luxcal web calendarFeb 17, 2025

  • SQL injection vulnerability in LuxCal Web Calendar prior to 5.2.3M (MySQL version) and LuxCal Web Calendar prior to 5.2.3L (SQLite version)

    CriticalCVSS 9.1No exploitEPSS 1%

    luxsoft · luxcal web calendarAug 21, 2023

  • The LuxCal Web Calendar prior to 5.3.3M (MySQL version) and prior to 5.3.3L (SQLite version) contains a missing authentication vulnerability

    HighCVSS 7.5No exploitEPSS 1%

    luxsoft · luxcal web calendarFeb 17, 2025

  • Cross-site scripting vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior to 5.2.4L (SQLite ve

    MediumCVSS 6.1No exploitEPSS 1%

    luxsoft · luxcal web calendarNov 20, 2023

  • Cross-site scripting vulnerability in LuxCal Web Calendar prior to 5.2.3M (MySQL version) and LuxCal Web Calendar prior to 5.2.3L (SQLite ve

    MediumCVSS 6.1No exploitEPSS 1%

    luxsoft · luxcal web calendarAug 21, 2023

  • The LuxCal Web Calendar prior to 5.3.3M (MySQL version) and prior to 5.3.3L (SQLite version) contains a path traversal vulnerability in dloa

    MediumCVSS 5.3No exploitEPSS 1%

    luxsoft · luxcal web calendarFeb 17, 2025