Filtered by vendor Visam Subscriptions
Filtered by product Vbase Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-45876 1 Visam 1 Vbase 2024-08-03 5.5 Medium
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
CVE-2022-3217 1 Visam 1 Vbase 2024-08-03 7.5 High
When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages. An unauthenticated remote attacker with the ability to capture a login session can obtain the login credentials.