Skip to content
Noroxi

qlik records

13 published records for vendor qlik.

All records

13 records
  • An HTTP Request Tunneling vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and earlier, February 2023

    CriticalCVSS 9.9KEVWeaponizedEPSS 88%

    qlik · qlik senseAug 29, 2023

  • Qlik Sense Enterprise for Windows before August 2023 Patch 2 allows unauthenticated remote code execution, aka QB-21683.

    CriticalCVSS 9.9KEVWeaponizedEPSS 47%

    qlik · qlik senseNov 15, 2023

  • A path traversal vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and earlier, February 2023 Patch 7 a

    MediumCVSS 6.5KEVWeaponizedEPSS 85%

    qlik · qlik senseAug 29, 2023

  • Qlik Sense Enterprise for Windows before 14.187.4 allows a remote attacker to elevate their privilege due to improper validation.

    HighCVSS 8.8No exploitEPSS 1%

    May 22, 2024

  • A race condition in the installer executable in Qlik Qlikview before versions May 2022 SR3 (12.70.20300) and May 2023 SR2 (12,80.20200) may

    HighCVSS 7.8Proof of conceptEPSS 0%

    Apr 5, 2024

  • Qlik NPrinting Designer through 21.14.3.0 creates a Temporary File in a Directory with Insecure Permissions.

    HighCVSS 7.8No exploitEPSS 0%

    qlik · nprinting designerJan 26, 2023

  • Qlik QlikView through 12.60.20100.0 creates a Temporary File in a Directory with Insecure Permissions.

    HighCVSS 7.8No exploitEPSS 0%

    qlik · qlikviewJan 26, 2023

  • CVE-2015-3623
    30Monitor

    XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forger

    MediumCVSS 6.4Proof of conceptEPSS 16%

    qlik · qlikviewSep 16, 2015

  • Qlik Sense Enterprise v14.212.13 was discovered to contain an information leak via the /dev-hub/ directory.

    HighCVSS 7.5No exploitEPSS 0%

    qlik · qlik senseNov 20, 2025

  • An issue was discovered in QlikView Server before 11.20 SR19, 12.00 and 12.10 before 12.10 SR11, 12.20 before SR9, and 12.30 before SR2; and

    MediumCVSS 6.5No exploitEPSS 1%

    qlik · qlikview serverApr 30, 2019

  • CVE-2022-0564
    21Monitor

    Qlik Sense Enterprise Domain User enumeration

    MediumCVSS 5.3No exploitEPSS 1%

    qlik · qlik senseFeb 21, 2022

  • The GeoAnalytics feature in Qlik Sense April 2020 patch 4 allows SSRF.

    MediumCVSS 5.3No exploitEPSS 1%

    qlik · qlik senseJun 21, 2022

  • QlikView 12.60.2 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the QvsViewClient functionality.

    MediumCVSS 5.4Proof of conceptEPSS 0%

    qlik · qlikviewMar 6, 2023