Vulnerabilities > Edetw

DATE CVE VULNERABILITY TITLE RISK
2023-08-25 CVE-2023-32756 Path Traversal vulnerability in Edetw U-Office Force 20.0.7668D
e-Excellence U-Office Force has a path traversal vulnerability within its file uploading and downloading functions.
network
low complexity
edetw CWE-22
7.5
2023-08-25 CVE-2023-32757 Unrestricted Upload of File with Dangerous Type vulnerability in Edetw U-Office Force 20.0.7668D
e-Excellence U-Office Force file uploading function does not restrict upload of file with dangerous type.
network
low complexity
edetw CWE-434
critical
9.8
2023-08-25 CVE-2023-32755 Information Exposure Through an Error Message vulnerability in Edetw U-Office Force 20.0.7668D
e-Excellence U-Office Force generates an error message in webiste service.
network
low complexity
edetw CWE-209
5.3
2022-10-31 CVE-2022-39021 Open Redirect vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force login function has an Open Redirect vulnerability.
network
low complexity
edetw CWE-601
6.1
2022-10-31 CVE-2022-39022 Path Traversal vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force Download function has a path traversal vulnerability.
network
low complexity
edetw CWE-22
6.5
2022-10-31 CVE-2022-39023 Path Traversal vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force Download function has a path traversal vulnerability.
network
low complexity
edetw CWE-22
6.5
2022-10-31 CVE-2022-39024 Cross-site Scripting vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force Bulletin function has insufficient filtering for special characters.
network
low complexity
edetw CWE-79
6.1
2022-10-31 CVE-2022-39025 Cross-site Scripting vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force PrintMessage function has insufficient filtering for special characters.
network
low complexity
edetw CWE-79
6.1
2022-10-31 CVE-2022-39026 Cross-site Scripting vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force UserDefault page has insufficient filtering for special characters in the HTTP header fields.
network
low complexity
edetw CWE-79
5.4
2022-10-31 CVE-2022-39027 Cross-site Scripting vulnerability in Edetw U-Office Force 20.50.7821D
U-Office Force Forum function has insufficient filtering for special characters.
network
low complexity
edetw CWE-79
5.4