Vulnerabilities > Treasuryxpress > C2Box
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-01-23 | CVE-2015-4626 | Numeric Errors vulnerability in Treasuryxpress C2Box B.A.S C2Box before 4.0.0 (r19171) relies on client-side validation, which allows remote attackers to "corrupt the business logic" via a negative value in an overdraft. | 7.5 |