Vulnerabilities (CVE)

Filtered by vendor Centrinity Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-1045 1 Centrinity 1 Centrinity Firstclass Desktop Client 2024-02-04 7.5 HIGH N/A
OpenText FirstClass 8.0 client does not properly sanitize strings before passing them to the Windows ShellExecute API, which allows remote attackers to execute arbitrary commands via a UNC path in a bookmark.
CVE-2003-1173 1 Centrinity 1 Centrinity Firstclass 2024-02-04 5.0 MEDIUM N/A
Centrinity FirstClass 7.1 allows remote attackers to access sensitive information by appending search to the end of the URL and checking all of the search option checkboxes and leaving the text field blank, which will return all files in the searched directory.
CVE-2000-0570 1 Centrinity 1 Firstclass Intranet Server 2024-02-04 5.0 MEDIUM N/A
FirstClass Internet Services server 5.770, and other versions before 6.1, allows remote attackers to cause a denial of service by sending an email with a long To: mail header.
CVE-2001-0631 1 Centrinity 1 Centrinity Firstclass 2024-02-04 5.0 MEDIUM N/A
Centrinity First Class Internet Services 5.50 allows for the circumventing of the default 'spam' filters via the presence of '<@>' in the 'From:' field, which allows remote attackers to send spoofed email with the identity of local users.