genesys kayıtları
genesys üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-434 Unrestricted Upload of File with Dangerous Type1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2023-29930Kavram kanıtı | An issue was found in Genesys CIC Polycom phone provisioning TFTP Server all version allows a remote attacker to execute arbitrary code via genesys · tftp server · CWE-434 | Yüksek8,8 | — | %2,0 | 10 May 2023 |
29İzleyin | CVE-2021-40860İstismar yok | A SQL Injection in the custom filter query component in Genesys intelligent Workload Distribution (IWD) before 9.0.013.11 allows an attackergenesys · intelligent workload distribution manager · CWE-89 | Yüksek7,2 | — | %1,7 | 8 Ara 2021 |
29İzleyin | CVE-2021-40861İstismar yok | A SQL Injection in the custom filter query component in Genesys intelligent Workload Distribution (IWD) 9.0.017.07 allows an attacker to exegenesys · intelligent workload distribution manager · CWE-89 | Yüksek7,2 | — | %1,7 | 8 Ara 2021 |
24İzleyin | CVE-2022-37775İstismar yok | Genesys PureConnect Interaction Web Tools Chat Service (up to at least 26- September- 2019) allows XSS within the Printable Chat History viagenesys · pureconnect · CWE-79 | Orta6,1 | — | %0,9 | 16 Eyl 2022 |
24İzleyin | CVE-2019-17176İstismar yok | Genesys PureEngage Digital (eServices) 8.1.x allows XSS via HtmlChatPanel.jsp or HtmlChatFrameSet.jsp (ActionColor, ClientNickNameColor, Emagenesys · eservices chat · CWE-79 | Orta6,1 | — | %0,9 | 11 Eki 2019 |
24İzleyin | CVE-2021-26787İstismar yok | A cross site scripting (XSS) vulnerability in Genesys Workforce Management 8.5.214.20 can occur (during record deletion) via the Time-off pagenesys · workforce management · CWE-79 | Orta6,1 | — | %0,8 | 15 Ara 2021 |
24İzleyin | CVE-2023-23208İstismar yok | Genesys Administrator Extension (GAX) before 9.0.105.15 is vulnerable to Cross Site Scripting (XSS) via the Business Structure page of the igenesys · administrator extension · CWE-79 | Orta6,1 | — | %0,4 | 13 Ağu 2023 |
- CVE-2023-2993036İzleyin
An issue was found in Genesys CIC Polycom phone provisioning TFTP Server all version allows a remote attacker to execute arbitrary code via
YüksekCVSS 8,8Kavram kanıtıEPSS %2genesys · tftp server10 May 2023
- CVE-2021-4086029İzleyin
A SQL Injection in the custom filter query component in Genesys intelligent Workload Distribution (IWD) before 9.0.013.11 allows an attacker
YüksekCVSS 7,2İstismar yokEPSS %2genesys · intelligent workload distribution manager8 Ara 2021
- CVE-2021-4086129İzleyin
A SQL Injection in the custom filter query component in Genesys intelligent Workload Distribution (IWD) 9.0.017.07 allows an attacker to exe
YüksekCVSS 7,2İstismar yokEPSS %2genesys · intelligent workload distribution manager8 Ara 2021
- CVE-2022-3777524İzleyin
Genesys PureConnect Interaction Web Tools Chat Service (up to at least 26- September- 2019) allows XSS within the Printable Chat History via
OrtaCVSS 6,1İstismar yokEPSS %1genesys · pureconnect16 Eyl 2022
- CVE-2019-1717624İzleyin
Genesys PureEngage Digital (eServices) 8.1.x allows XSS via HtmlChatPanel.jsp or HtmlChatFrameSet.jsp (ActionColor, ClientNickNameColor, Ema
OrtaCVSS 6,1İstismar yokEPSS %1genesys · eservices chat11 Eki 2019
- CVE-2021-2678724İzleyin
A cross site scripting (XSS) vulnerability in Genesys Workforce Management 8.5.214.20 can occur (during record deletion) via the Time-off pa
OrtaCVSS 6,1İstismar yokEPSS %1genesys · workforce management15 Ara 2021
- CVE-2023-2320824İzleyin
Genesys Administrator Extension (GAX) before 9.0.105.15 is vulnerable to Cross Site Scripting (XSS) via the Business Structure page of the i
OrtaCVSS 6,1İstismar yokEPSS %0genesys · administrator extension13 Ağu 2023