Vulnerabilities > UNA

DATE CVE VULNERABILITY TITLE RISK
2019-08-09 CVE-2019-14805 Cross-site Scripting vulnerability in UNA 10.0.0
studio/builder_menu.php?page=sets in UNA 10.0.0-RC1 allows XSS via the System Name field under Sets during set editing.
network
una CWE-79
3.5
2019-08-09 CVE-2019-14804 Cross-site Scripting vulnerability in UNA 10.0.0
studio/polyglot.php?page=etemplates in UNA 10.0.0-RC1 allows XSS via the System Name field under Emails during template editing.
network
una CWE-79
3.5
2005-10-14 CVE-2005-3227 Multiple interpretation error in unspecified versions of UNA Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
network
high complexity
una
5.1