Vulnerabilities (CVE)

Filtered by vendor Loftware Subscribe
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-37226 1 Loftware 1 Spectrum 2025-05-29 N/A 9.8 CRITICAL
Loftware Spectrum before 4.6 HF14 has Missing Authentication for a Critical Function.
CVE-2023-37227 1 Loftware 1 Spectrum 2025-05-29 N/A 9.8 CRITICAL
Loftware Spectrum before 4.6 HF13 Deserializes Untrusted Data.
CVE-2023-37231 1 Loftware 1 Spectrum 2025-05-29 N/A 9.8 CRITICAL
Loftware Spectrum before 4.6 HF14 uses a Hard-coded Password.
CVE-2023-37233 1 Loftware 1 Spectrum 2024-09-18 N/A 8.8 HIGH
Loftware Spectrum before 4.6 HF14 allows authenticated XXE attacks.
CVE-2023-37234 1 Loftware 1 Spectrum 2024-09-18 N/A 9.8 CRITICAL
Loftware Spectrum through 4.6 has unprotected JMX Registry.
CVE-2023-37232 1 Loftware 1 Spectrum 2024-09-18 N/A 7.5 HIGH
Loftware Spectrum through 4.6 exposes Sensitive Information (Logs) to an Unauthorized Actor.