Vulnerabilities > Italtel

DATE CVE VULNERABILITY TITLE RISK
2024-08-20 CVE-2024-31842 Unspecified vulnerability in Italtel Embrace 1.6.4
An issue was discovered in Italtel Embrace 1.6.4.
network
low complexity
italtel
8.8
2024-05-21 CVE-2024-31840 Cleartext Transmission of Sensitive Information vulnerability in Italtel Embrace 1.6.4
An issue was discovered in Italtel Embrace 1.6.4.
network
low complexity
italtel CWE-319
6.5
2024-05-21 CVE-2024-31844 Information Exposure Through an Error Message vulnerability in Italtel Embrace 1.6.4
An issue was discovered in Italtel Embrace 1.6.4.
network
low complexity
italtel CWE-209
5.3
2024-05-21 CVE-2024-31847 Cross-site Scripting vulnerability in Italtel Embrace 1.6.4
An issue was discovered in Italtel Embrace 1.6.4.
network
low complexity
italtel CWE-79
6.1
2023-01-27 CVE-2022-39811 Missing Authorization vulnerability in Italtel Netmatch-S CI 5.2.020211008
Italtel NetMatch-S CI 5.2.0-20211008 has incorrect Access Control under NMSCI-WebGui/advancedsettings.jsp and NMSCIWebGui/SaveFileUploader.
network
low complexity
italtel CWE-862
critical
9.1
2023-01-27 CVE-2022-39812 Path Traversal vulnerability in Italtel Netmatch-S CI 5.2.020211008
Italtel NetMatch-S CI 5.2.0-20211008 allows Absolute Path Traversal under NMSCI-WebGui/SaveFileUploader.
network
low complexity
italtel CWE-22
7.5
2023-01-27 CVE-2022-39813 Cross-site Scripting vulnerability in Italtel Netmatch-S CI 5.2.020211008
Italtel NetMatch-S CI 5.2.0-20211008 allows Multiple Reflected/Stored XSS issues under NMSCIWebGui/j_security_check via the j_username parameter, or NMSCIWebGui/actloglineview.jsp via the name or actLine parameter.
network
low complexity
italtel CWE-79
6.1