Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Alcatech Gmbh Subscribe
Filtered by product Bpm Studio Pro
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1780 1 Alcatech Gmbh 1 Bpm Studio Pro 2017-07-10 5.0 MEDIUM N/A
BPM Studio Pro 4.2 by ALCATech GmbH includes a webserver that allows a remote attacker to cause a denial of service (crash) by sending a URL request for a MS-DOS device such as con. NOTE: it has been disputed that this and possibly other application-level DOS device issues stem from a bug in Windows, and as such, such applications should not be considered vulnerable themselves.
CVE-2002-0331 1 Alcatech Gmbh 1 Bpm Studio Pro 2016-10-17 5.0 MEDIUM N/A
Directory traversal vulnerability in the HTTP server for BPM Studio Pro 4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP request.