Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2022-3091

Disclosure Date: January 17, 2023 (last updated November 08, 2023)
RONDS EPM version 1.19.5 has a vulnerability in which a function could allow unauthenticated users to leak credentials. In some circumstances, an attacker can exploit this vulnerability to execute operating system (OS) commands.
Attacker Value
Unknown

CVE-2022-2893

Disclosure Date: January 17, 2023 (last updated November 08, 2023)
RONDS EPM version 1.19.5 does not properly validate the filename parameter, which could allow an unauthorized user to specify file paths and download files.