Filtered by vendor Altova
Subscriptions
Filtered by product Mobiletogether Server
Subscriptions
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2021-38490 | 1 Altova | 1 Mobiletogether Server | 2024-11-21 | 7.5 High |
Altova MobileTogether Server before 7.3 SP1 allows XML exponential entity expansion, a different vulnerability than CVE-2021-37425. | ||||
CVE-2021-37425 | 1 Altova | 1 Mobiletogether Server | 2024-11-21 | 9.1 Critical |
Altova MobileTogether Server before 7.3 SP1 allows XXE attacks, such as an InfoSetChanges/Changes attack against /workflowmanagement, or reading mobiletogetherserver.cfg and then reading the certificate and private key. |
Page 1 of 1.