Vulnerabilities (CVE)

Filtered by vendor Quadbase Subscribe
Filtered by product Espressreport Enterprise Server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-9958 1 Quadbase 1 Espressreport Enterprise Server 2024-02-28 6.8 MEDIUM 8.8 HIGH
CSRF within the admin panel in Quadbase EspressReport ES (ERES) v7.0 update 7 allows remote attackers to escalate privileges, or create new admin accounts by crafting a malicious web page that issues specific requests, using a target admin's session to process their requests.