Vulnerabilities > Epignosishq

DATE CVE VULNERABILITY TITLE RISK
2021-03-03 CVE-2020-28597 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Epignosishq Efront 5.2.17/5.2.21
A predictable seed vulnerability exists in the password reset functionality of Epignosis EfrontPro 5.2.21.
network
low complexity
epignosishq CWE-335
7.5
2019-09-05 CVE-2019-5070 SQL Injection vulnerability in Epignosishq Efront LMS
An exploitable SQL injection vulnerability exists in the unauthenticated portion of eFront LMS, versions v5.2.12 and earlier.
network
low complexity
epignosishq CWE-89
6.5
2019-09-05 CVE-2019-5069 Deserialization of Untrusted Data vulnerability in Epignosishq Efront LMS
A code execution vulnerability exists in Epignosis eFront LMS v5.2.12.
network
low complexity
epignosishq CWE-502
8.8