tylertech records
13 published records for vendor tylertech.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-287 Improper Authentication5
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-502 Deserialization of Untrusted Data1
- CWE-552 Files or Directories Accessible to External Parties1
- CWE-639 Authorization Bypass Through User-Controlled Key1
The weakness classes this vendor ships most often: where to look.
CWEAll records
13 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2023-6342No exploit | Tyler Technologies Court Case Management Plus "pay for print" allows authentication bypasstylertech · court case management plus · CWE-287 | Critical9.8 | — | 1.1% | Nov 30, 2023 |
38Monitor | CVE-2019-16112Proof of concept | TylerTech Eagle 2018.3.11 deserializes untrusted user input, resulting in remote code execution via a crafted Java object to the recorder/Setylertech · eagle · CWE-502 | High8.8 | — | 11.4% | May 13, 2020 |
37Monitor | CVE-2023-6354No exploit | Tyler Technologies Magistrate Court Case Management Plus PDFViewer.aspx allows authentication bypasstylertech · court case management plus · CWE-287 | Critical9.4 | — | 1.0% | Nov 30, 2023 |
37Monitor | CVE-2023-6353No exploit | Tyler Technologies Civil and Criminal Electronic Filing Upload.aspx allows authentication bypasstylertech · court case management plus · CWE-287 | Critical9.4 | — | 1.0% | Nov 30, 2023 |
31Monitor | CVE-2022-26665No exploit | An Insecure Direct Object Reference issue exists in the Tyler Odyssey Portal platform before 17.1.20.tylertech · odyssey portal · CWE-639 | High7.5 | — | 1.9% | Apr 18, 2022 |
30Monitor | CVE-2023-6375No exploit | Tyler Technologies Magistrate Court Case Management Plus stores backups insecurelytylertech · court case management plus · CWE-552 | High7.5 | — | 1.0% | Nov 30, 2023 |
27Monitor | CVE-2013-6018No exploit | Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to hijack the auttylertech · taxweb · CWE-352 | Medium6.8 | — | 0.6% | Oct 27, 2013 |
23Monitor | CVE-2013-6020No exploit | passwordRequestPOST.jsp in Tyler Technologies TaxWeb 3.13.3.1 sends different HTTP status codes for invalid password-recovery requests depentylertech · taxweb · CWE-200 | Medium5.8 | — | 1.3% | Oct 27, 2013 |
21Monitor | CVE-2023-6343No exploit | Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server tssp.aspx allows authentication bypasstylertech · court case management plus · CWE-287 | Medium5.3 | — | 0.9% | Nov 30, 2023 |
21Monitor | CVE-2023-6344No exploit | Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server te003.aspx and te004.aspx allows authentication bypasstylertech · court case management plus · CWE-287 | Medium5.3 | — | 0.9% | Nov 30, 2023 |
21Monitor | CVE-2025-55077No exploit | Tyler Technologies ERP Pro 9 SaaS application escapetylertech · erp pro 9 · CWE-250 | Medium5.3 | — | 0.2% | Aug 7, 2025 |
20Monitor | CVE-2013-6285No exploit | The search component in the Treasurer application in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to obtain sensitive query-sttylertech · taxweb · CWE-200 | Medium5.0 | — | 1.4% | Oct 27, 2013 |
17Monitor | CVE-2013-6019No exploit | Cross-site scripting (XSS) vulnerability in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to inject arbitrary web script or HTMtylertech · taxweb · CWE-79 | Medium4.3 | — | 1.0% | Oct 27, 2013 |
- CVE-2023-634239Monitor
Tyler Technologies Court Case Management Plus "pay for print" allows authentication bypass
CriticalCVSS 9.8No exploitEPSS 1%tylertech · court case management plusNov 30, 2023
- CVE-2019-1611238Monitor
TylerTech Eagle 2018.3.11 deserializes untrusted user input, resulting in remote code execution via a crafted Java object to the recorder/Se
HighCVSS 8.8Proof of conceptEPSS 11%tylertech · eagleMay 13, 2020
- CVE-2023-635437Monitor
Tyler Technologies Magistrate Court Case Management Plus PDFViewer.aspx allows authentication bypass
CriticalCVSS 9.4No exploitEPSS 1%tylertech · court case management plusNov 30, 2023
- CVE-2023-635337Monitor
Tyler Technologies Civil and Criminal Electronic Filing Upload.aspx allows authentication bypass
CriticalCVSS 9.4No exploitEPSS 1%tylertech · court case management plusNov 30, 2023
- CVE-2022-2666531Monitor
An Insecure Direct Object Reference issue exists in the Tyler Odyssey Portal platform before 17.1.20.
HighCVSS 7.5No exploitEPSS 2%tylertech · odyssey portalApr 18, 2022
- CVE-2023-637530Monitor
Tyler Technologies Magistrate Court Case Management Plus stores backups insecurely
HighCVSS 7.5No exploitEPSS 1%tylertech · court case management plusNov 30, 2023
- CVE-2013-601827Monitor
Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to hijack the aut
MediumCVSS 6.8No exploitEPSS 1%tylertech · taxwebOct 27, 2013
- CVE-2013-602023Monitor
passwordRequestPOST.jsp in Tyler Technologies TaxWeb 3.13.3.1 sends different HTTP status codes for invalid password-recovery requests depen
MediumCVSS 5.8No exploitEPSS 1%tylertech · taxwebOct 27, 2013
- CVE-2023-634321Monitor
Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server tssp.aspx allows authentication bypass
MediumCVSS 5.3No exploitEPSS 1%tylertech · court case management plusNov 30, 2023
- CVE-2023-634421Monitor
Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server te003.aspx and te004.aspx allows authentication bypass
MediumCVSS 5.3No exploitEPSS 1%tylertech · court case management plusNov 30, 2023
- CVE-2025-5507721Monitor
Tyler Technologies ERP Pro 9 SaaS application escape
MediumCVSS 5.3No exploitEPSS 0%tylertech · erp pro 9Aug 7, 2025
- CVE-2013-628520Monitor
The search component in the Treasurer application in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to obtain sensitive query-st
MediumCVSS 5.0No exploitEPSS 1%tylertech · taxwebOct 27, 2013
- CVE-2013-601917Monitor
Cross-site scripting (XSS) vulnerability in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to inject arbitrary web script or HTM
MediumCVSS 4.3No exploitEPSS 1%tylertech · taxwebOct 27, 2013