Portfolio
Extensis · 5 CVEs
CVE-2022-24255
HIGH
Extensis Portfolio v4.0 was discovered to contain hardcoded credentials which allows attackers to gain administrator pr…
Mar 1, 2022
CVE-2022-24254
HIGH
An unrestricted file upload vulnerability in the Backup/Restore Archive component of Extensis Portfolio v4.0 allows rem…
Mar 1, 2022
CVE-2022-24253
HIGH
Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the compo…
Mar 1, 2022
CVE-2022-24252
HIGH
An unrestricted file upload vulnerability in the FileTransferServlet component of Extensis Portfolio v4.0 allows remote…
Mar 1, 2022
CVE-2022-24251
HIGH
Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the Catal…
Mar 1, 2022
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2022-24255 | Extensis Portfolio v4.0 was discovered to contain hardcoded credentials which allows attackers to gain administrator privileges. | HIGH | 1.38% | Mar 1, 2022 |
| CVE-2022-24254 | An unrestricted file upload vulnerability in the Backup/Restore Archive component of Extensis Portfolio v4.0 allows remote attackers to execute arbitrary code… | HIGH | 2.60% | Mar 1, 2022 |
| CVE-2022-24253 | Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the component AdminFileTransferServlet. | HIGH | 1.30% | Mar 1, 2022 |
| CVE-2022-24252 | An unrestricted file upload vulnerability in the FileTransferServlet component of Extensis Portfolio v4.0 allows remote attackers to execute arbitrary code via… | HIGH | 2.33% | Mar 1, 2022 |
| CVE-2022-24251 | Extensis Portfolio v4.0 was discovered to contain an authenticated unrestricted file upload vulnerability via the Catalog Asset Upload function. | HIGH | 1.34% | Mar 1, 2022 |
Showing 1 to 5 of 5 CVEs