Vulnerabilities > Teamplus

DATE CVE VULNERABILITY TITLE RISK
2024-10-14 CVE-2024-9923 Unspecified vulnerability in Teamplus Team+ PRO
The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with administrator privileges to move arbitrary system files to the website root directory and access them.
network
low complexity
teamplus
4.9
2024-10-14 CVE-2024-9921 SQL Injection vulnerability in Teamplus Team+ PRO
The Team+ from TEAMPLUS TECHNOLOGY does not properly validate specific page parameter, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify and delete database contents.
network
low complexity
teamplus CWE-89
critical
9.8
2024-10-14 CVE-2024-9922 Unspecified vulnerability in Teamplus Team+ PRO
The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files.
network
low complexity
teamplus
7.5
2022-08-02 CVE-2022-35220 Allocation of Resources Without Limits or Throttling vulnerability in Teamplus Team+ PRO
Teamplus Pro community discussion function has an ‘allocation of resource without limits or throttling’ vulnerability.
network
low complexity
teamplus CWE-770
6.5
2022-07-20 CVE-2022-32958 Allocation of Resources Without Limits or Throttling vulnerability in Teamplus Team+ PRO
A remote attacker with general user privilege can send a message to Teamplus Pro’s chat group that exceeds message size limit, to terminate other recipients’ Teamplus Pro chat process.
network
low complexity
teamplus CWE-770
6.5