Skip to main content

Vendor/product archive

pentasecurity / wapples CVEs

Beta · best-effort

4 CVEs tagged to pentasecurity / wapples1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2022-35582

Published Sep 13, 2022

Penta Security Systems Inc WAPPLES 4.0.*, 5.0.0.*, 5.0.12.* are vulnerable to Incorrect Access Control. The operating system that WAPPLES runs on has a built-in non-privileged use…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-35413

Published Sep 13, 2022

WAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to access the system configuration and confidential information (such as SSL keys) via a…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-31324

Published Sep 13, 2022

An arbitrary file download vulnerability in the downloadAction() function of Penta Security Systems Inc WAPPLES v6.0 r3 4.10-hotfix1 allows attackers to download arbitrary files v…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31322

Published Sep 13, 2022

Penta Security Systems Inc WAPPLES v6.0 r3 4.10-hotfix1 allows attackers to escalate privileges via overwriting files using SUID flagged executables.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1