Vulnerabilities > Metaways
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-01 | CVE-2023-41364 | SQL Injection vulnerability in Metaways Tine In tine through 2023.01.14.325, the sort parameter of the /index.php endpoint allows SQL Injection. | 9.8 |
2011-04-10 | CVE-2011-1666 | Information Exposure vulnerability in Metaways Tine 2.0 Metaways Tine 2.0 allows remote attackers to obtain sensitive information via unknown vectors in (1) Crm/Controller.php, (2) Crm/Export/Csv.php, or (3) Calendar/Model/Attender.php, which reveal the full installation path. | 5.0 |