Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
grupposcai realgimm 1.1.37 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2023-41635
A XML External Entity (XXE) vulnerability in the VerifichePeriodiche.aspx component of GruppoSCAI RealGimm v1.1.37p38 allows malicious users to read any file in the filesystem via supplying a crafted XML file.
Grupposcai Realgimm 1.1.37
9.8
CVSSv3
CVE-2023-41636
A SQL injection vulnerability in the Data Richiesta dal parameter of GruppoSCAI RealGimm v1.1.37p38 allows malicious users to access the database and execute arbitrary commands via a crafted SQL query.
Grupposcai Realgimm 1.1.37
9.8
CVSSv3
CVE-2023-41637
An arbitrary file upload vulnerability in the Carica immagine function of GruppoSCAI RealGimm 1.1.37p38 allows malicious users to execute arbitrary code via uploading a crafted HTML file.
Grupposcai Realgimm 1.1.37
8.8
CVSSv3
CVE-2023-41638
An arbitrary file upload vulnerability in the Gestione Documentale module of GruppoSCAI RealGimm 1.1.37p38 allows malicious users to execute arbitrary code via uploading a crafted file.
Grupposcai Realgimm 1.1.37
8.8
CVSSv3
CVE-2023-41640
An improper error handling vulnerability in the component ErroreNonGestito.aspx of GruppoSCAI RealGimm 1.1.37p38 allows malicious users to obtain sensitive technical information via a crafted SQL query.
Grupposcai Realgimm 1.1.37
6.1
CVSSv3
CVE-2023-41642
Multiple reflected cross-site scripting (XSS) vulnerabilities in the ErroreNonGestito.aspx component of GruppoSCAI RealGimm 1.1.37p38 allow malicious users to execute arbitrary Javascript in the context of a victim user's browser via a crafted payload injected into the VIEWS...
Grupposcai Realgimm 1.1.37
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started