Filtered by vendor Systematic
Subscribe
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2019-18925 | 1 Systematic | 1 Iris Webforms | 2020-08-24 | 7.5 HIGH | 9.8 CRITICAL |
Systematic IRIS WebForms 5.4 and its functionalities can be accessed and used without any form of authentication. | |||||
CVE-2019-18924 | 1 Systematic | 1 Iris Webforms | 2019-11-13 | 5.0 MEDIUM | 5.3 MEDIUM |
Systematic IRIS WebForms 5.4 is vulnerable to directory traversal. By manipulating variables that reference files with ../ (and variations), it is possible to list all the directories and check if a particular file exists. |