Product
appspace
6 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2021-27704
CVE-2021-27990
CVE-2021-27989
CVE-2021-27670
CVE-2021-27564
CVE-2020-5393
all versions
Appspace 6.2.4 is affected by Incorrect Access Control via the Appspace Web Portal password reset page.
all versions
Appspace 6.2.4 is vulnerable to a broken authentication mechanism where pages such as /medianet/mail.aspx can be called directly a
all versions
Appspace 6.2.4 is vulnerable to stored cross-site scripting (XSS) in multiple parameters within /medianet/sgcontentset.aspx.
all versions
Appspace 6.2.4 allows SSRF via the api/v1/core/proxy/jsonprequest url parameter.
all versions
A stored XSS issue exists in Appspace 6.2.4. After a user is authenticated and enters an XSS payload under the groups section of t
<= 7.1.3
In Appspace On-Prem through 7.1.3, an adversary can steal a session token via XSS.