Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown
CVE-2023-31298
Disclosure Date: December 29, 2023 (last updated January 05, 2024)
Cross Site Scripting (XSS) vulnerability in Sesami Cash Point & Transport Optimizer (CPTO) version 6.3.8.6 (#718), allows remote attackers to execute arbitrary code and obtain sensitive information via the User ID field when creating a new system user.
0
Attacker Value
Unknown
CVE-2023-31292
Disclosure Date: December 29, 2023 (last updated January 05, 2024)
An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows local attackers to obtain sensitive information and bypass authentication via "Back Button Refresh" attack.
0
Attacker Value
Unknown
CVE-2023-31297
Disclosure Date: December 25, 2023 (last updated January 04, 2024)
An issue was discovered in SESAMI planfocus CPTO (Cash Point & Transport Optimizer) 6.3.8.6 718. There is XSS via the Name field when modifying a client.
0
Attacker Value
Unknown
CVE-2012-2062
Disclosure Date: September 17, 2012 (last updated October 05, 2023)
Open redirect vulnerability in the Redirecting click bouncer module for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
0
Attacker Value
Unknown
CVE-2008-7167
Disclosure Date: September 08, 2009 (last updated October 04, 2023)
Unrestricted file upload vulnerability in upload.php in Page Manager 2006-02-04 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.
0
Attacker Value
Unknown
CVE-2005-0450
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in Sami HTTP Server 1.0.5 allows remote attackers to read arbitrary files via an HTTP request containing (1) .. (dot dot) or (2) "%2e%2e" (encoded dot dot) sequences.
0
Attacker Value
Unknown
CVE-2005-0451
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Sami HTTP Server 1.0.5 allows remote attackers to cause a denial of service via an HTTP request containing two CRLF sequences, which triggers a NULL dereference.
0