Skip to main content

Vendor/product archive

xceedium / xsuite CVEs

Beta · best-effort

6 CVEs tagged to xceedium / xsuite2 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2015-4669

Published Sep 25, 2017

The MySQL "root" user in Xsuite 2.x does not have a password set, which allows local users to access databases on the system.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-4668

Published Sep 25, 2017

Open redirect vulnerability in Xsuite 2.4.4.5 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirurl p…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-4666

Published Aug 13, 2015

Directory traversal vulnerability in opm/read_sessionlog.php in Xceedium Xsuite 2.4.4.5 and earlier allows remote attackers to read arbitrary files via a ....// (quadruple dot dou…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-4665

Published Aug 13, 2015

Cross-site scripting (XSS) vulnerability in ajax_cmd.php in Xceedium Xsuite 2.4.4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the fileName par…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1