3 results (0.003 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 1

ASG technologies ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cross Site Scripting (XSS). ASG technologies ASG-Zena Cross Platform Server Enterprise Edition versión 4.2.1, es vulnerable a un ataque de tipo Cross Site Scripting (XSS) • https://github.com/JetP1ane/Zena-CVE-2021-45026 http://asg-zena.com http://asg.com https://docs.rocketsoftware.com/bundle/ven1649700711249/page/ayk1652945111726.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cleartext Storage of Sensitive Information in a Cookie. ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 es vulnerable a un Almacenamiento en Texto sin Cifrar de Información Confidencial en una Cookie • http://asg-zena.com http://asg.com https://docs.rocketsoftware.com/bundle/ven1649700711249/page/ayk1652945111726.html • CWE-312: Cleartext Storage of Sensitive Information •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to XML External Entity (XXE). ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition versión 4.2.1, es vulnerable a un ataque de tipo XML External Entity (XXE) • http://asg-zena.com http://asg.com https://docs.rocketsoftware.com/bundle/ven1649700711249/page/ayk1652945111726.html • CWE-611: Improper Restriction of XML External Entity Reference •