Vulnerabilities > Hgiga > High

DATE CVE VULNERABILITY TITLE RISK
2021-01-19 CVE-2021-22852 SQL Injection vulnerability in Hgiga Oaklouds Openid 2.0/3.0
HGiga EIP product contains SQL Injection vulnerability.
network
low complexity
hgiga CWE-89
8.8
2020-12-31 CVE-2020-35743 SQL Injection vulnerability in Hgiga products
HGiga MailSherlock contains a SQL injection flaw.
network
low complexity
hgiga CWE-89
7.6
2020-12-31 CVE-2020-35742 SQL Injection vulnerability in Hgiga products
HGiga MailSherlock contains a vulnerability of SQL Injection.
network
low complexity
hgiga CWE-89
7.6
2020-12-31 CVE-2020-25850 Unspecified vulnerability in Hgiga Msr45 Isherlock-User and Ssr45 Isherlock-User
The function, view the source code, of HGiga MailSherlock does not validate specific characters.
network
low complexity
hgiga
7.5
2020-04-15 CVE-2020-10512 SQL Injection vulnerability in Hgiga Oaklouds Ccm@Il
HGiga C&Cmail CCMAILQ before olln-calendar-6.0-100.i386.rpm and CCMAILN before olln-calendar-5.0-100.i386.rpm contains a SQL Injection vulnerability which allows attackers to injecting SQL commands in the URL parameter to execute unauthorized commands.
network
low complexity
hgiga CWE-89
8.8
2019-06-03 CVE-2019-9883 Cross-Site Request Forgery (CSRF) vulnerability in Hgiga products
Multi modules of MailSherlock MSR35 and MSR45 lead to a CSRF vulnerability.
network
low complexity
hgiga CWE-352
8.8
2019-06-03 CVE-2019-9882 Cross-Site Request Forgery (CSRF) vulnerability in Hgiga products
Multi modules of MailSherlock MSR35 and MSR45 lead to a CSRF vulnerability.
network
low complexity
hgiga CWE-352
8.8