Vulnerabilities > Cherwell

DATE CVE VULNERABILITY TITLE RISK
2022-02-28 CVE-2022-26155 Cross-site Scripting vulnerability in Cherwell Service Management 10.2.3
An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3.
network
low complexity
cherwell CWE-79
6.1
2022-02-28 CVE-2022-26156 Open Redirect vulnerability in Cherwell Service Management 10.2.3
An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3.
network
low complexity
cherwell CWE-601
6.1
2022-02-28 CVE-2022-26157 Missing Encryption of Sensitive Data vulnerability in Cherwell Service Management 10.2.3
An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3.
network
low complexity
cherwell CWE-311
5.3
2022-02-28 CVE-2022-26158 Open Redirect vulnerability in Cherwell Service Management 10.2.3
An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3.
network
low complexity
cherwell CWE-601
6.1