Vulnerabilities > Maarch > Maarch RM > 2.9

DATE CVE VULNERABILITY TITLE RISK
2022-11-23 CVE-2022-37772 Improper Restriction of Excessive Authentication Attempts vulnerability in Maarch RM
Maarch RM 2.8.3 solution contains an improper restriction of excessive authentication attempts due to excessive verbose responses from the application.
network
low complexity
maarch CWE-307
7.5
2022-11-23 CVE-2022-37773 SQL Injection vulnerability in Maarch RM
An authenticated SQL Injection vulnerability in the statistics page (/statistics/retrieve) of Maarch RM 2.8, via the filter parameter, allows the complete disclosure of all databases.
network
low complexity
maarch CWE-89
6.5
2022-11-23 CVE-2022-37774 Improper Authentication vulnerability in Maarch RM
There is a broken access control vulnerability in the Maarch RM 2.8.3 solution.
network
low complexity
maarch CWE-287
5.3