Vulnerabilities > Logaritmo

DATE CVE VULNERABILITY TITLE RISK
2020-09-30 CVE-2020-26150 Forced Browsing vulnerability in Logaritmo Aware Callmanager 2012
info.php in Logaritmo Aware CallManager 2012 allows remote attackers to obtain sensitive information via a direct request, which calls the phpinfo function.
network
low complexity
logaritmo CWE-425
7.5
2020-01-21 CVE-2019-20385 Unrestricted Upload of File with Dangerous Type vulnerability in Logaritmo Aware Callmanager 2012
The CSV upload feature in /supervisor/procesa_carga.php on Logaritmo Aware CallManager 2012 devices allows upload of .php files with a text/* content type.
network
low complexity
logaritmo CWE-434
8.8