Vulnerabilities > Aquaverde

DATE CVE VULNERABILITY TITLE RISK
2019-07-15 CVE-2019-1010308 Insufficiently Protected Credentials vulnerability in Aquaverde Aquarius CMS
Aquaverde GmbH Aquarius CMS prior to version 4.1.1 is affected by: Incorrect Access Control.
network
low complexity
aquaverde CWE-522
critical
9.8
2019-04-24 CVE-2019-9734 Information Exposure Through Log Files vulnerability in Aquaverde Aquarius CMS
Aquarius CMS through 4.3.5 writes POST and GET parameters (including passwords) to a log file due to an overwriting of configuration parameters under certain circumstances.
network
low complexity
aquaverde CWE-532
7.5
2019-04-24 CVE-2019-9724 Information Exposure Through Log Files vulnerability in Aquaverde Aquarius CMS
aquaverde Aquarius CMS through 4.3.5 allows Information Exposure through Log Files because of an error in the Log-File writer component.
network
low complexity
aquaverde CWE-532
7.5