Vulnerabilities > Inedo > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-09-26 CVE-2017-15608 Cross-Site Request Forgery (CSRF) vulnerability in Inedo Proget
Inedo ProGet before 5.0 Beta5 has CSRF, allowing an attacker to change advanced settings.
network
low complexity
inedo CWE-352
6.5
2017-11-10 CVE-2017-16761 Open Redirect vulnerability in Inedo Buildmaster
An Open Redirect vulnerability in Inedo BuildMaster before 5.8.2 allows remote attackers to redirect users to arbitrary web sites.
network
low complexity
inedo CWE-601
6.1
2017-11-10 CVE-2017-16760 Cross-site Scripting vulnerability in Inedo Buildmaster
Inedo BuildMaster before 5.8.2 has XSS.
network
low complexity
inedo CWE-79
6.1