Bitrix / Bitrix24
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-34891 | Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to read Exchange account passwords vi… | MEDIUM | 6.8 | Nov 4, 2024 |
| CVE-2024-34887 | Insufficiently protected credentials in AD/LDAP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send AD/LDAP administrators ac… | MEDIUM | 6.8 | Nov 4, 2024 |
| CVE-2024-34885 | Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to read SMTP accounts passwords via… | MEDIUM | 6.8 | Nov 4, 2024 |
| CVE-2024-34883 | Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allow remote administrators to read proxy-server accounts password… | MEDIUM | 6.8 | Nov 4, 2024 |
| CVE-2024-34882 | Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send SMTP account passwords to an… | MEDIUM | 6.8 | Nov 4, 2024 |
| CVE-2020-13758 | modules/security/classes/general.post_filter.php/post_filter.php in the Web Application Firewall in Bitrix24 through 20.0.950 allows XSS by placing %00 before… | MEDIUM | 6.1 | Jun 1, 2020 |
Showing 1 to 6 of 6 CVEs