Vulnerabilities > Vembu > BDR Suite > High

DATE CVE VULNERABILITY TITLE RISK
2022-04-04 CVE-2021-43458 Unquoted Search Path or Element vulnerability in Vembu BDR Suite 4.2.0.1
An Unquoted Service Path vulnerability exits in Vembu BDR 4.2.0.1 via a specially crafted file in the (1) hsflowd, (2) VembuBDR360Agent, or (3) VembuOffice365Agent service paths.
local
low complexity
vembu CWE-428
7.8
2021-06-08 CVE-2021-26474 Cross-Site Request Forgery (CSRF) vulnerability in Vembu BDR Suite and Offsite DR
Various Vembu products allow an attacker to execute a (non-blind) http-only Cross Site Request Forgery (Other products or versions of products in this family may be affected too.)
network
low complexity
vembu CWE-352
8.8