Vulnerabilities > Sysax

DATE CVE VULNERABILITY TITLE RISK
2020-08-19 CVE-2020-23574 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Sysax Multi Server 6.90
When uploading a file in Sysax Multi Server 6.90, an authenticated user can modify the filename="" parameter in the uploadfile_name1.htm form to a length of 368 or more bytes.
network
low complexity
sysax CWE-119
6.5
2020-06-02 CVE-2020-13229 Session Fixation vulnerability in Sysax Multi Server 6.90
An issue was discovered in Sysax Multi Server 6.90.
network
low complexity
sysax CWE-384
8.8
2020-06-02 CVE-2020-13228 Cross-site Scripting vulnerability in Sysax Multi Server 6.90
An issue was discovered in Sysax Multi Server 6.90.
network
low complexity
sysax CWE-79
6.1
2020-06-02 CVE-2020-13227 Path Traversal vulnerability in Sysax Multi Server 6.90
An issue was discovered in Sysax Multi Server 6.90.
network
low complexity
sysax CWE-22
5.3