Vulnerabilities (CVE)

Filtered by vendor Serena Software Subscribe
Filtered by product Serena Teamtrack
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-2563 1 Serena Software 1 Serena Teamtrack 2024-02-04 5.8 MEDIUM N/A
Serena TeamTrack 6.1.1 allows remote attackers to obtain sensitive information such as user names, versions, and database information, and conduct cross-site scripting (XSS) attacks, via a direct request to tmtrack.dll with modified LoginPage and Template parameters.