Known Vulnerabilities for products from Iii

Listed below are 6 of the newest known vulnerabilities associated with the vendor "Iii".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2014-5138 json Innovative Interfaces Sierra Library Services Platform 1.2_3 does not properly handle query strings with multiple instances o... 7.5 - HIGH 2020-01-14 2020-01-21
CVE-2014-5137 json Innovative Interfaces Sierra Library Services Platform 1.2_3 provides different responses for login request depending on whet... 5 - MEDIUM 2014-09-02 2018-10-09
CVE-2014-5136 json Cross-site scripting (XSS) vulnerability in Innovative Interfaces Sierra Library Services Platform 1.2_3 allows remote attack... 4.3 - MEDIUM 2014-09-02 2018-10-09
CVE-2014-5128 json Innovative Interfaces Encore Discovery Solution 4.3 places a session token in the URI, which might allow remote attackers to ... 5 - MEDIUM 2014-08-29 2018-10-09
CVE-2014-5127 json Open redirect vulnerability in Innovative Interfaces Encore Discovery Solution 4.3 allows remote attackers to redirect users ... 5.8 - MEDIUM 2014-08-29 2018-10-09
CVE-2014-2081 json Multiple SQL injection vulnerabilities in the login in web_reports/cgi-bin/InfoStation.cgi in Innovative vtls-Virtua before 2... 7.5 - HIGH 2014-10-20 2015-01-26

Known software with vulnerabilities from Iii

Type Vendor Product Version
ApplicationIiiEncore Discovery Solution4.3
ApplicationIiiSierra1.2_3