Skip to content
Noroxi

rocketsoftware records

24 published records for vendor rocketsoftware.

All records

24 records
  • CVE-2014-3914
    62This week

    Directory traversal vulnerability in the Admin Center for Tivoli Storage Manager (TSM) in Rocket ServerGraph 1.2 allows remote attackers to

    CriticalCVSS 10.0WeaponizedEPSS 73%

    rocketsoftware · rocket servergraphAug 7, 2014

  • Authentication bypass in UniRPC's udadmin service

    CriticalCVSS 9.8WeaponizedEPSS 62%

    rocketsoftware · unidataMar 29, 2023

  • Stack buffer overflow in UniRPC's udadmin_server service

    CriticalCVSS 9.8WeaponizedEPSS 61%

    rocketsoftware · unidataMar 29, 2023

  • The userRequest servlet in the Admin Center for Tivoli Storage Manager in Rocket Servergraph allows remote attackers to execute arbitrary co

    CriticalCVSS 10.0No exploitEPSS 3%

    rocketsoftware · rocket servergraphJun 11, 2014

  • Stack buffer overflow in UniRPC library function

    CriticalCVSS 9.8No exploitEPSS 1%

    rocketsoftware · unidataMar 29, 2023

  • Heap buffer overflow in unirpcd

    CriticalCVSS 9.8No exploitEPSS 1%

    rocketsoftware · unidataMar 29, 2023

  • An arbitrary file upload vulnerability in Rocket TRUfusion Enterprise before 7.9.6.1 allows unauthenticated attackers to execute arbitrary c

    CriticalCVSS 9.8No exploitEPSS 1%

    rocketsoftware · trufusionDec 1, 2022

  • ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to XML External Entity (

    CriticalCVSS 9.8No exploitEPSS 1%

    rocketsoftware · ags-zenaJun 17, 2022

  • Memory exhaustion in LZ4 decompression in UniRPC daemon

    CriticalCVSS 9.8No exploitEPSS 1%

    rocketsoftware · unidataMar 29, 2023

  • TRUfusion Enterprise through 7.10.4.0 uses the /trufusionPortal/fileupload endpoint to upload files.

    CriticalCVSS 9.8No exploitEPSS 1%

    rocketsoftware · trufusion enterpriseOct 27, 2025

  • A Server-Side Request Forgery (SSRF) in Rocket TRUfusion Portal v7.9.2.1 allows remote attackers to gain access to sensitive resources on th

    HighCVSS 7.5No exploitEPSS 24%

    rocketsoftware · trufusion enterpriseJan 12, 2023

  • Rocket TRUfusion Enterprise through 7.10.5 exposes the endpoint at /axis2/services/WsPortalV6UpDwAxis2Impl to authenticated users to be able

    CriticalCVSS 9.4No exploitEPSS 1%

    rocketsoftware · trufusion enterpriseFeb 17, 2026

  • TRUfusion Enterprise through 7.10.4.0 exposes the /trufusionPortal/jsp/internal_admin_contact_login.jsp endpoint to unauthenticated users.

    HighCVSS 7.5Proof of conceptEPSS 18%

    rocketsoftware · trufusion enterpriseOct 27, 2025

  • TRUfusion Enterprise through 7.10.4.0 uses the /trufusionPortal/getCobrandingData endpoint to retrieve files.

    HighCVSS 8.6Proof of conceptEPSS 2%

    rocketsoftware · trufusion enterpriseOct 27, 2025

  • Stack buffer overflow in UniRPC service

    HighCVSS 8.8No exploitEPSS 1%

    rocketsoftware · unidataMar 29, 2023

  • Heap corruption in UniRPC service

    HighCVSS 8.8No exploitEPSS 1%

    rocketsoftware · unidataMar 29, 2023

  • Buffer overflow in UniRPC library function

    HighCVSS 8.8No exploitEPSS 1%

    rocketsoftware · unidataMar 29, 2023

  • TRUfusion Enterprise through 7.10.4.0 exposes the encrypted COOKIEID as an authentication mechanism for some endpoints such as /trufusionPor

    HighCVSS 7.5Proof of conceptEPSS 2%

    rocketsoftware · trufusion enterpriseOct 27, 2025

  • Rocket TRUfusion Enterprise through 7.10.4.0 uses a reverse proxy to handle incoming connections.

    HighCVSS 7.9Proof of conceptEPSS 1%

    rocketsoftware · trufusion enterpriseFeb 17, 2026

  • The Forgotten Password functionality of Rocket TRUfusion Portal v7.9.2.1 allows remote attackers to bypass authentication and access restric

    HighCVSS 7.5No exploitEPSS 1%

    rocketsoftware · trufusion enterpriseJan 12, 2023

  • ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cleartext Storage of

    HighCVSS 7.5No exploitEPSS 1%

    rocketsoftware · ags-zenaJun 17, 2022

  • Weak encryption in UniRPC protocol

    HighCVSS 7.5No exploitEPSS 0%

    rocketsoftware · unidataMar 29, 2023

  • Rocket Software Rocket Zena 4.4.1.26 is vulnerable to SQL Injection via the filter parameter.

    HighCVSS 7.3No exploitEPSS 0%

    rocketsoftware · zenaJul 30, 2025

  • ASG technologies ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cross Site Scripting (XSS).

    MediumCVSS 6.1Proof of conceptEPSS 1%

    rocketsoftware · ags-zenaJun 17, 2022