Agilefleet / Fleetcommander
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2012-4947 | Agile FleetCommander and FleetCommander Kiosk before 4.08 store database credentials in cleartext, which allows remote attackers to obtain sensitive informatio… | MEDIUM | 5.0 | Nov 18, 2012 |
| CVE-2012-4946 | Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easier for context-dependent attackers to o… | MEDIUM | 5.0 | Nov 18, 2012 |
| CVE-2012-4945 | Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary commands via unspecified vectors, related to a "command i… | HIGH | 7.5 | Nov 18, 2012 |
| CVE-2012-4944 | Multiple unrestricted file upload vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary code… | HIGH | 10.0 | Nov 18, 2012 |
| CVE-2012-4943 | Multiple cross-site request forgery (CSRF) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to hijack the au… | MEDIUM | 6.8 | Nov 18, 2012 |
| CVE-2012-4942 | Multiple cross-site scripting (XSS) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to inject arbitrary web… | MEDIUM | 4.3 | Nov 18, 2012 |
| CVE-2012-4941 | Multiple SQL injection vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary SQL commands vi… | HIGH | 7.5 | Nov 18, 2012 |
Showing 1 to 7 of 7 CVEs