İçeriğe atla
Noroxi

jedox kayıtları

jedox üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

8 kayıt
  • CVE-2022-47878
    46Planlayın

    Incorrect input validation for the default-storage-path in the settings page in Jedox 2020.2.5 allows remote, authenticated users to specify

    YüksekCVSS 8,8Kavram kanıtıEPSS %36

    jedox · jedox2 May 2023

  • CVE-2022-47875
    38İzleyin

    A Directory Traversal vulnerability in /be/erpc.php in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users to execute arbitrary code

    YüksekCVSS 8,8Kavram kanıtıEPSS %10

    jedox · cloud2 May 2023

  • CVE-2022-47876
    37İzleyin

    The integrator in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users to create Jobs to execute arbitrary code via Groovy-scripts.

    YüksekCVSS 8,8Kavram kanıtıEPSS %7

    jedox · jedox2 May 2023

  • CVE-2022-47874
    32İzleyin

    Improper Access Control in /tc/rpc in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users to view details of database connections vi

    OrtaCVSS 6,5Kavram kanıtıEPSS %21

    jedox · cloud2 May 2023

  • CVE-2022-47879
    32İzleyin

    A Remote Code Execution (RCE) vulnerability in /be/rpc.php in Jedox 2020.2.5 allows remote authenticated users to load arbitrary PHP classes

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    jedox · jedox12 May 2023

  • CVE-2022-47880
    22İzleyin

    An Information disclosure vulnerability in /be/rpc.php in Jedox GmbH Jedox 2020.2.5 allow remote, authenticated users with permissions to mo

    OrtaCVSS 5,3Kavram kanıtıEPSS %3

    jedox · jedox12 May 2023

  • CVE-2022-47877
    22İzleyin

    A Stored cross-site scripting vulnerability in Jedox 2020.2.5 allows remote, authenticated users to inject arbitrary web script or HTML in t

    OrtaCVSS 5,4Kavram kanıtıEPSS %3

    jedox · jedox2 May 2023

  • CVE-2007-3581
    20İzleyin

    The Jedox Palo 1.5 client transmits the password in cleartext, which might allow remote attackers to obtain the password by sniffing the net

    OrtaCVSS 5,0İstismar yokEPSS %2

    jedox · palo5 Tem 2007