Imind Server
Mind · 3 CVEs
CVE-2020-25398
HIGH
CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality.
Nov 5, 2020
CVE-2020-25399
HIGH
Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a mali…
Nov 5, 2020
CVE-2020-24765
HIGH
InterMind iMind Server through 3.13.65 allows remote unauthenticated attackers to read the self-diagnostic archive via…
Oct 20, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2020-25398 | CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality. | HIGH | 1.98% | Nov 5, 2020 |
| CVE-2020-25399 | Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a malicious file in the chat. | HIGH | 1.02% | Nov 5, 2020 |
| CVE-2020-24765 | InterMind iMind Server through 3.13.65 allows remote unauthenticated attackers to read the self-diagnostic archive via a direct api/rs/monitoring/rs/api/system… | HIGH | 6.80% | Oct 20, 2020 |
Showing 1 to 3 of 3 CVEs