Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-27695 | 1 Openmaint | 1 Openmaint | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
Multiple stored cross-site scripting (XSS) vulnerabilities in openMAINT 2.1-3.3-b allow remote attackers to inject arbitrary web script or HTML via any "Add" sections, such as Add Card Building & Floor, or others in the Name and Code Parameters. | |||||
CVE-2020-24549 | 1 Openmaint | 1 Openmaint | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
openMAINT before 1.1-2.4.2 allows remote authenticated users to run arbitrary JSP code on the underlying web server. |