Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Xigla Subscribe
Filtered by product Absolute Control Panel Xe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-1504 1 Xigla 1 Absolute Control Panel Xe 2017-09-28 7.5 HIGH N/A
Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "lvl=1&userid=1."
CVE-2008-6859 1 Xigla 1 Absolute Control Panel Xe 2017-09-28 7.5 HIGH N/A
Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.
CVE-2008-2756 1 Xigla 1 Absolute Control Panel Xe 2017-08-07 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in admin/users.asp in Xigla Absolute Control Panel XE 1.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter and other unspecified parameters. NOTE: some of these details are obtained from third party information.