Skip to main content

Vendor/product archive

nchsoftware / ivm_attendant CVEs

Beta · best-effort

7 CVEs tagged to nchsoftware / ivm_attendant0 Critical, 2 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2021-37444

Published Jul 25, 2021

NCH IVM Attendant v5.12 and earlier suffers from a directory traversal weakness upon uploading plugins in a ZIP archive. This can lead to code execution if a ZIP element's pathnam…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37443

Published Jul 25, 2021

NCH IVM Attendant v5.12 and earlier allows path traversal via the logdeleteselected check0 parameter for file deletion.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1