Known Vulnerabilities for products from Ascertia
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Ascertia".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-61166 json | An open redirect in Ascertia SigningHub User v10.0 allows attackers to redirect users to a malicious site via a crafted URL. | Not Provided | 2026-04-06 | 2026-04-10 |
| CVE-2025-56224 json | A lack of rate limiting in the One-Time Password (OTP) verification endpoint of SigningHub v8.6.8 allows attackers to bypass ... | Not Provided | 2025-10-20 | 2026-07-05 |
| CVE-2025-56223 json | A lack of rate limiting in the component /Home/UploadStreamDocument of SigningHub v8.6.8 allows attackers to cause a Denial o... | Not Provided | 2025-10-20 | 2026-07-05 |
| CVE-2025-56219 json | Incorrect access control in SigningHub v8.6.8 allows attackers to arbitrarily add user accounts without any rate limiting. Th... | Not Provided | 2025-10-20 | 2026-07-05 |
| CVE-2025-56218 json | An arbitrary file upload vulnerability in SigningHub v8.6.8 allows attackers to execute arbitrary code via uploading a crafte... | Not Provided | 2025-10-17 | 2026-07-05 |