Vulnerabilities > Mobisystems

DATE CVE VULNERABILITY TITLE RISK
2023-07-20 CVE-2023-37600 Cross-site Scripting vulnerability in Mobisystems Office Suite 10.9.1.42602
Office Suite Premium Version v10.9.1.42602 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the id parameter at /api?path=profile.
network
low complexity
mobisystems CWE-79
6.1
2023-07-20 CVE-2023-37601 Path Traversal vulnerability in Mobisystems Office Suite 10.9.1.42602
Office Suite Premium v10.9.1.42602 was discovered to contain a local file inclusion (LFI) vulnerability via the component /etc/hosts.
network
low complexity
mobisystems CWE-22
7.5
2023-07-20 CVE-2023-38617 Cross-site Scripting vulnerability in Mobisystems Office Suite 10.9.1.42602
Office Suite Premium Version v10.9.1.42602 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the filter parameter at /api?path=files.
network
low complexity
mobisystems CWE-79
6.1