Vulnerabilities > Gurock > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-22 CVE-2021-40875 Forced Browsing vulnerability in Gurock Testrail
Improper Access Control in Gurock TestRail versions < 7.2.0.3014 resulted in sensitive information exposure.
network
low complexity
gurock CWE-425
7.5
2019-02-25 CVE-2018-20063 Unrestricted Upload of File with Dangerous Type vulnerability in Gurock Testrail 5.6.0.3853
An issue was discovered in Gurock TestRail 5.6.0.3853.
network
low complexity
gurock CWE-434
8.8