Ipswitch / Moveit Dmz
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-6195 | Ipswitch MOVEit Transfer (formerly DMZ) allows pre-authentication blind SQL injection. The fixed versions are MOVEit Transfer 2017 9.0.0.201, MOVEit DMZ 8.3.0.… | CRITICAL | 9.8 | May 18, 2017 |
| CVE-2015-7676 | Ipswitch MOVEit File Transfer (formerly DMZ) 8.1 and earlier, when configured to support file view on download, allows remote authenticated users to conduct cr… | MEDIUM | 5.4 | Apr 15, 2016 |
| CVE-2015-7680 | Ipswitch MOVEit DMZ before 8.2 provides different error messages for authentication attempts depending on whether the user account exists, which allows remote… | MEDIUM | 5.3 | Feb 10, 2016 |
| CVE-2015-7677 | The MOVEitISAPI service in Ipswitch MOVEit DMZ before 8.2 provides different error messages depending on whether a FileID exists, which allows remote authentic… | MEDIUM | 4.3 | Feb 10, 2016 |
| CVE-2015-7675 | The "Send as attachment" feature in Ipswitch MOVEit DMZ before 8.2 and MOVEit Mobile before 1.2.2 allow remote authenticated users to bypass authorization and… | MEDIUM | 6.5 | Feb 10, 2016 |
Showing 1 to 5 of 5 CVEs