Filtered by vendor Misys Subscriptions
Filtered by product Fusioncapital Opics Plus Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2016-5653 1 Misys 1 Fusioncapital Opics Plus 2024-08-06 N/A
Multiple SQL injection vulnerabilities in Misys FusionCapital Opics Plus allow remote authenticated users to execute arbitrary SQL commands via the (1) ID or (2) Branch parameter.
CVE-2016-5655 1 Misys 1 Fusioncapital Opics Plus 2024-08-06 N/A
Misys FusionCapital Opics Plus does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to obtain sensitive information via a crafted certificate.
CVE-2016-5654 1 Misys 1 Fusioncapital Opics Plus 2024-08-06 N/A
Misys FusionCapital Opics Plus allows remote authenticated users to gain privileges via a man-in-the-middle attack that modifies the xmlMessageOut parameter.