Vulnerabilities > Jetstream

DATE CVE VULNERABILITY TITLE RISK
2020-05-14 CVE-2019-13023 Insufficiently Protected Credentials vulnerability in Jetstream Jetselect
An issue was discovered in all versions of Bond JetSelect.
network
low complexity
jetstream CWE-522
6.5
2020-05-14 CVE-2019-13022 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Jetstream Jetselect
Bond JetSelect (all versions) has an issue in the Java class (ENCtool.jar) and corresponding password generation algorithm (used to set initial passwords upon first installation).
network
low complexity
jetstream CWE-327
critical
9.8
2020-05-14 CVE-2019-13021 Cleartext Storage of Sensitive Information vulnerability in Jetstream Jetselect
The administrative passwords for all versions of Bond JetSelect are stored within an unprotected file on the filesystem, rather than encrypted within the MySQL database.
network
low complexity
jetstream CWE-312
6.5