Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2021-45968
Disclosure Date: March 18, 2022 (last updated October 07, 2023)
An issue was discovered in xmppserver jar in the XMPP Server component of the JIve platform, as used in Pascom Cloud Phone System before 7.20.x (and in other products). An endpoint in the backend Tomcat server of the Pascom allows SSRF, a related issue to CVE-2019-18394.
0
Attacker Value
Unknown
CVE-2018-5758
Disclosure Date: March 12, 2018 (last updated November 26, 2024)
The Upload File functionality in upload.jspa in Aurea Jive Jive-n 9.0.2.1 On-Premises allows for an XML External Entity attack through a crafted file, allowing attackers to read arbitrary files.
0
Attacker Value
Unknown
CVE-2016-4334
Disclosure Date: April 10, 2017 (last updated November 26, 2024)
Jive before 2016.3.1 has an open redirect from the external-link.jspa page.
0