Vulnerabilities > Webank

DATE CVE VULNERABILITY TITLE RISK
2022-06-16 CVE-2020-25459 Exposure of Resource to Wrong Sphere vulnerability in Webank Federated AI Technology Enabler
An issue was discovered in function sync_tree in hetero_decision_tree_guest.py in WeBank FATE (Federated AI Technology Enabler) 0.1 through 1.4.2 allows attackers to read sensitive information during the training process of machine learning joint modeling.
network
low complexity
webank CWE-668
5.0
2022-02-24 CVE-2021-45746 Path Traversal vulnerability in Webank Wecube 3.2.1
A Directory Traversal vulnerability exists in WeBankPartners wecube-platform 3.2.1 via the file variable in PluginPackageController.java.
network
low complexity
webank CWE-22
5.0