Known Vulnerabilities for products from Davical
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Davical".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-11729 json | An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Long-term session cookies, uses to provide long... | 9.8 - CRITICAL | 2020-04-15 | 2020-08-18 |
| CVE-2020-11728 json | An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Session management does not use a sufficiently ... | 7.5 - HIGH | 2020-04-15 | 2020-09-28 |
| CVE-2019-18347 json | A stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can... | 5.4 - MEDIUM | 2019-12-04 | 2019-12-14 |
| CVE-2019-18346 json | A CSRF issue was discovered in DAViCal through 1.1.8. If an authenticated user visits an attacker-controlled webpage, the att... | 8.8 - HIGH | 2019-12-04 | 2019-12-14 |
| CVE-2019-18345 json | A reflected XSS issue was discovered in DAViCal through 1.1.8. It echoes the action parameter without encoding. If a user vis... | 9.3 - CRITICAL | 2019-12-12 | 2023-02-01 |
Known software with vulnerabilities from Davical
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Davical | Andrews Web Libraries | - |
| Application | Davical | Davical | - |