Known Vulnerabilities for products from Dundas
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Dundas".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-28409 json | The server in Dundas BI through 8.0.0.1001 allows XSS via addition of a Component (e.g., a button) when events such as click,... | 5.4 - MEDIUM | 2020-11-10 | 2020-11-18 |
| CVE-2020-28408 json | The server in Dundas BI through 8.0.0.1001 allows XSS via an HTML label when creating or editing a dashboard. | 5.4 - MEDIUM | 2020-11-10 | 2020-11-18 |
| CVE-2018-18569 json | The Dundas BI server before 5.0.1.1010 is vulnerable to a Server-Side Request Forgery attack, allowing an attacker to forge a... | 8.6 - HIGH | 2019-02-11 | 2019-02-22 |
Known software with vulnerabilities from Dundas
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Dundas | Dundas Bi | 5.0.1.1010 |
| Application | Dundas | Dundas Chart Asp.net | 3.5.0.1590 |