Skip to main content

Vendor archive

maggioli CVEs

Beta · best-effort

5 CVEs tagged to vendor maggioli1 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2022-44788

Published Nov 21, 2022

An issue was discovered in Appalti & Contratti 9.12.2. It allows Session Fixation. When a user logs in providing a JSESSIONID cookie that is issued by the server at the first visi…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44787

Published Nov 21, 2022

An issue was discovered in Appalti & Contratti 9.12.2. The web applications are vulnerable to a Reflected Cross-Site Scripting issue. The idPagina parameter is reflected inside th…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44786

Published Nov 21, 2022

An issue was discovered in Appalti & Contratti 9.12.2. The target web applications allow Local File Inclusion in any page relying on the href parameter to specify the JSP page to…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-44785

Published Nov 21, 2022

An issue was discovered in Appalti & Contratti 9.12.2. The target web applications are subject to multiple SQL Injection vulnerabilities, some of which executable even by unauthen…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-44784

Published Nov 21, 2022

An issue was discovered in Appalti & Contratti 9.12.2. The target web applications LFS and DL229 expose a set of services provided by the Axis 1.4 instance, embedded directly into…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1