Vulnerabilities > Etouch

DATE CVE VULNERABILITY TITLE RISK
2015-02-24 CVE-2015-2071 Path Traversal vulnerability in Etouch Samepage 4.4.0.0.239
Directory traversal vulnerability in cm/newui/blog/export.jsp in eTouch SamePage Enterprise Edition 4.4.0.0.239 allows remote authenticated users to read arbitrary files via a ..
network
low complexity
etouch CWE-22
4.0
2015-02-24 CVE-2015-2070 SQL Injection vulnerability in Etouch Samepage 4.4.0.0.239
SQL injection vulnerability in eTouch SamePage Enterprise Edition 4.4.0.0.239 allows remote attackers to execute arbitrary SQL commands via the catId parameter to cm/blogrss/feed.
network
low complexity
etouch CWE-89
7.5