Skip to main content

Vendor archive

synel CVEs

Beta · best-effort

8 CVEs tagged to vendor synel1 Critical, 3 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2022-36778

Published Sep 13, 2022

insert HTML / js code inside input how to get to the vulnerable input : Workers > worker nickname > inject in this input the code.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22791

Published Jan 28, 2022

SYNEL - eharmony Authenticated Blind & Stored XSS. Inject JS code into the "comments" field could lead to potential stealing of cookies, loading of HTML tags and JS code onto the…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-22790

Published Jan 28, 2022

SYNEL - eharmony Directory Traversal. Directory Traversal - is an attack against a server or a Web application aimed at unauthorized access to the file system. on the "Name" param…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36718

Published Dec 8, 2021

SYNEL - eharmonynew / Synel Reports - The attacker can log in to the system with default credentials and export a report of eharmony system with sensetive data (Employee name, Emp…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1