Known Vulnerabilities for products from Qsige
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Qsige".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-4103 json | QSige statistics are affected by a remote SQLi vulnerability. It has been identified that the web application does not correc... | 8.8 - HIGH | 2023-10-03 | 2023-10-10 |
| CVE-2023-4102 json | QSige login SSO does not have an access control mechanism to verify whether the user requesting a resource has sufficient per... | 8.8 - HIGH | 2023-10-03 | 2023-10-10 |
| CVE-2023-4101 json | The QSige login SSO does not have an access control mechanism to verify whether the user requesting a resource has sufficient... | 6.5 - MEDIUM | 2023-10-03 | 2023-10-10 |
| CVE-2023-4100 json | Allows an attacker to perform XSS attacks stored on certain resources. Exploiting this vulnerability can lead to a DoS condit... | 8.2 - HIGH | 2023-10-03 | 2023-10-04 |
| CVE-2023-4099 json | The QSige Monitor application does not have an access control mechanism to verify whether the user requesting a resource has ... | 6.5 - MEDIUM | 2023-10-03 | 2023-10-04 |
| CVE-2023-4098 json | It has been identified that the web application does not correctly filter input parameters, allowing SQL injections, DoS or i... | 8.8 - HIGH | 2023-10-03 | 2023-10-04 |
| CVE-2023-4097 json | The file upload functionality is not implemented correctly and allows uploading of any type of file. As a prerequisite, it is... | 8.8 - HIGH | 2023-10-03 | 2023-10-04 |