Vulnerabilities (CVE)

Filtered by vendor Transtek Subscribe
Filtered by product Mojodat Fixed Asset Management
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-38771 1 Transtek 1 Mojodat Fixed Asset Management 2024-11-21 N/A 9.8 CRITICAL
The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to send SCRIPT tags as injected input to the API request.
CVE-2022-38770 1 Transtek 1 Mojodat Fixed Asset Management 2024-11-21 N/A 5.3 MEDIUM
The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to fetch other users' data upon a successful login request.
CVE-2022-38769 1 Transtek 1 Mojodat Fixed Asset Management 2024-11-21 N/A 7.5 HIGH
The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to fetch cleartext passwords upon a successful login request.
CVE-2022-38768 1 Transtek 1 Mojodat Fixed Asset Management 2024-11-21 N/A 9.8 CRITICAL
The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to bypass authorization.