Known Vulnerabilities for products from Backclick
Listed below are 10 of the newest known vulnerabilities associated with the vendor "Backclick".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-44008 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to improper validation, arbitrary local files can be retrieved ... | 6.5 - MEDIUM | 2022-11-16 | 2022-11-21 |
| CVE-2022-44007 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to an unsafe implementation of session tracking, it is possible... | 8.8 - HIGH | 2022-11-16 | 2022-11-21 |
| CVE-2022-44006 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to improper validation or sanitization of upload filenames, an ... | 9.8 - CRITICAL | 2022-11-16 | 2022-11-20 |
| CVE-2022-44005 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to the use of consecutive IDs in verification links, the newsle... | 5.3 - MEDIUM | 2022-11-16 | 2022-11-21 |
| CVE-2022-44004 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to insecure design or lack of authentication, unauthenticated a... | 9.8 - CRITICAL | 2022-11-16 | 2022-11-20 |
| CVE-2022-44003 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to insufficient escaping of user-supplied input, the applicatio... | 9.8 - CRITICAL | 2022-11-16 | 2022-11-20 |
| CVE-2022-44002 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to insufficient output encoding of user-supplied data, the web ... | 6.1 - MEDIUM | 2022-11-16 | 2022-11-18 |
| CVE-2022-44001 json | An issue was discovered in BACKCLICK Professional 5.9.63. User authentication for accessing the CORBA back-end services can b... | 9.8 - CRITICAL | 2022-11-17 | 2022-11-18 |
| CVE-2022-44000 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to an exposed internal communications interface, it is possible... | 9.8 - CRITICAL | 2022-11-16 | 2022-11-21 |
| CVE-2022-43999 json | An issue was discovered in BACKCLICK Professional 5.9.63. Due to exposed CORBA management services, arbitrary system commands... | 9.8 - CRITICAL | 2022-11-16 | 2022-11-21 |