Vulnerabilities (CVE)

Filtered by vendor Infor Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-7953 1 Infor 1 Enterprise Asset Management 2024-02-04 3.5 LOW 5.4 MEDIUM
INFOR EAM V11.0 Build 201410 has XSS via comment fields.
CVE-2017-7952 1 Infor 1 Enterprise Asset Management 2024-02-04 6.5 MEDIUM 8.8 HIGH
INFOR EAM V11.0 Build 201410 has SQL injection via search fields, related to the filtervalue parameter.
CVE-2011-1915 1 Infor 2 Eclient, Enspire Distribution Management Solution 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in eClient 7.3.2.3 in Enspire Distribution Management Solution 7.3.2.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.