Vulnerabilities > Powerjob > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-08-17 | CVE-2023-36106 | Unspecified vulnerability in Powerjob An incorrect access control vulnerability in powerjob 4.3.2 and earlier allows remote attackers to obtain sensitive information via the interface for querying via appId parameter to /container/list. | 7.5 |
2022-06-16 | CVE-2020-28865 | Insufficiently Protected Credentials vulnerability in Powerjob An issue was discovered in PowerJob through 3.2.2, allows attackers to change arbitrary user passwords via the id parameter to /appinfo/save. | 7.5 |