Vulnerabilities > Jetstream
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-05-14 | CVE-2019-13023 | Insufficiently Protected Credentials vulnerability in Jetstream Jetselect An issue was discovered in all versions of Bond JetSelect. | 6.5 |
2020-05-14 | CVE-2019-13022 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Jetstream Jetselect Bond JetSelect (all versions) has an issue in the Java class (ENCtool.jar) and corresponding password generation algorithm (used to set initial passwords upon first installation). | 9.8 |
2020-05-14 | CVE-2019-13021 | Cleartext Storage of Sensitive Information vulnerability in Jetstream Jetselect The administrative passwords for all versions of Bond JetSelect are stored within an unprotected file on the filesystem, rather than encrypted within the MySQL database. | 6.5 |