Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
archibus web central 2022.03.01.107 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv3
CVE-2022-45164
An issue exists in Archibus Web Central 2022.03.01.107. A service exposed by the application allows a basic user to cancel (delete) a booking, created by someone else - even if this basic user is not a member of the booking
Archibus Archibus Web Central 2022.03.01.107
4.3
CVSSv3
CVE-2022-45166
An issue exists in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a set of user-controlled parameters that are used to act on the data returned to the user. It allows a basic user to access data unrelated to their role.
Archibus Archibus Web Central 2022.03.01.107
4.3
CVSSv3
CVE-2022-45167
An issue exists in Archibus Web Central 2022.03.01.107. A service exposed by the application allows a basic user to access the profile information of all connected users.
Archibus Archibus Web Central 2022.03.01.107
8.8
CVSSv3
CVE-2022-45165
An issue exists in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a user-controlled parameter that is used to create an SQL query. It causes this service to be prone to SQL injection.
Archibus Web Central 2022.03.01.107
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23316
SQL injection
type confusion
CVE-2024-20697
CVE-2024-4344
local
CVE-2024-30043
CVE-2024-3821
CVE-2024-5041
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started