Vulnerabilities > Qlik > Qlikview

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2022-42248 Cross-site Scripting vulnerability in Qlik Qlikview
QlikView 12.60.2 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the QvsViewClient functionality.
network
low complexity
qlik CWE-79
5.4
2023-01-26 CVE-2021-41989 Exposure of Resource to Wrong Sphere vulnerability in Qlik Qlikview 12.60.20100.0
Qlik QlikView through 12.60.20100.0 creates a Temporary File in a Directory with Insecure Permissions.
local
low complexity
qlik CWE-668
7.8
2015-09-16 CVE-2015-3623 Unspecified vulnerability in Qlik Qlikview
XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forgery (SSRF) attacks and read arbitrary files via crafted XML data in a request to AccessPoint.aspx.
network
low complexity
qlik
6.4