Vulnerabilities > Maarch > Maarch RM

DATE CVE VULNERABILITY TITLE RISK
2022-11-23 CVE-2022-37772 Improper Restriction of Excessive Authentication Attempts vulnerability in Maarch RM
Maarch RM 2.8.3 solution contains an improper restriction of excessive authentication attempts due to excessive verbose responses from the application.
network
low complexity
maarch CWE-307
7.5
2022-11-23 CVE-2022-37773 SQL Injection vulnerability in Maarch RM
An authenticated SQL Injection vulnerability in the statistics page (/statistics/retrieve) of Maarch RM 2.8, via the filter parameter, allows the complete disclosure of all databases.
network
low complexity
maarch CWE-89
6.5
2022-11-23 CVE-2022-37774 Improper Authentication vulnerability in Maarch RM
There is a broken access control vulnerability in the Maarch RM 2.8.3 solution.
network
low complexity
maarch CWE-287
5.3
2020-01-17 CVE-2019-15855 Path Traversal vulnerability in Maarch RM
An issue was discovered in Maarch RM before 2.5.
network
low complexity
maarch CWE-22
6.4
2020-01-17 CVE-2019-15854 Unspecified vulnerability in Maarch RM
An issue was discovered in Maarch RM before 2.5.
network
low complexity
maarch
6.5