Filtered by vendor Polarisft Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-14930 1 Polarisft 1 Intellect Core Banking 2024-08-05 N/A
An issue was discovered in the Armor module in Polaris FT Intellect Core Banking 9.7.1. CSRF can occur via a /CollatWebApp/gcmsRefInsert?name=SUPP URI.
CVE-2018-14931 1 Polarisft 1 Intellect Core Banking 2024-08-05 N/A
An issue was discovered in the Core and Portal modules in Polaris FT Intellect Core Banking 9.7.1. An open redirect exists via a /IntellectMain.jsp?IntellectSystem= URI.
CVE-2018-14874 1 Polarisft 1 Intellect Core Banking 2024-08-05 N/A
An issue was discovered in the Armor module in Polaris FT Intellect Core Banking 9.7.1. Input passed through the code parameter in three pages as collaterals/colexe3t.jsp and /references/refsuppu.jsp and /references/refbranu.jsp is mishandled before being used in SQL queries, allowing SQL injection with an authenticated session.
CVE-2018-14875 1 Polarisft 1 Intellect Core Banking 2024-08-05 N/A
An issue was discovered in the Core and Portal modules in Polaris FT Intellect Core Banking 9.7.1. Reflected XSS exists with an authenticated session via the Customerid, formName, FrameId, or MODE parameter.