Filtered by vendor Agilepoint Subscriptions
Filtered by product Agilepoint Nx Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-30619 1 Agilepoint 1 Agilepoint Nx 2024-09-16 5.9 Medium
Editable SQL Queries behind Base64 encoding sending from the Client-Side to The Server-Side for a particular API used in legacy Work Center module. He attack is available for any authenticated user, in any kind of rule. under the function : /AgilePointServer/Extension/FetchUsingEncodedData in the parameter: EncodedData
CVE-2023-31179 1 Agilepoint 1 Agilepoint Nx 2024-08-02 6.5 Medium
AgilePoint NX v8.0 SU2.2 & SU2.3 - Path traversal - Vulnerability allows path traversal and downloading files from the server, by an unspecified request.
CVE-2023-31178 1 Agilepoint 1 Agilepoint Nx 2024-08-02 8.1 High
AgilePoint NX v8.0 SU2.2 & SU2.3 – Arbitrary File Delete Vulnerability allows arbitrary file deletion, by an unspecified request.
CVE-2023-24507 1 Agilepoint 1 Agilepoint Nx 2024-08-02 8.8 High
AgilePoint NX v8.0 SU2.2 & SU2.3 – Insecure File Upload - Vulnerability allows insecure file upload, by an unspecified request.