Vulnerabilities > Hamastar

DATE CVE VULNERABILITY TITLE RISK
2024-08-05 CVE-2024-6117 Unrestricted Upload of File with Dangerous Type vulnerability in Hamastar Meetinghub Paperless Meetings 2021
A Unrestricted upload of file with dangerous type vulnerability in meeting management function in Hamastar MeetingHub Paperless Meetings 2021 allows remote authenticated users to perform arbitrary system commands via a crafted ASP file.
network
low complexity
hamastar CWE-434
8.8
2024-08-05 CVE-2024-6118 Insufficiently Protected Credentials vulnerability in Hamastar Meetinghub Paperless Meetings 2021
A Plaintext Storage of a Password vulnerability in ebooknote function in Hamastar MeetingHub Paperless Meetings 2021 allows remote attackers to obtain the other users’ credentials and gain access to the product via an XML file.
network
low complexity
hamastar CWE-522
critical
9.1