Known Vulnerabilities for products from Rainbowfishsoftware
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Rainbowfishsoftware".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-29166 json | PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by file read/manipulation, which can result in remote informa... | 7.5 - HIGH | 2021-02-03 | 2021-07-21 |
| CVE-2020-29165 json | PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by incorrect access control, which can result in remotely gai... | 9.8 - CRITICAL | 2021-02-03 | 2021-07-21 |
| CVE-2020-29164 json | PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by cross-site scripting (XSS). | 6.1 - MEDIUM | 2021-02-03 | 2021-02-04 |
| CVE-2020-29163 json | PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by SQL injection. | 8.8 - HIGH | 2021-02-03 | 2021-02-04 |
| CVE-2020-12870 json | RainbowFish PacsOne Server 6.8.4 allows SQL injection on the username parameter in the signup page. | 9.8 - CRITICAL | 2020-09-30 | 2020-10-02 |
| CVE-2020-12869 json | RainbowFish PacsOne Server 6.8.4 allows XSS. | 5.4 - MEDIUM | 2020-09-30 | 2020-10-02 |
| CVE-2020-12715 json | RainbowFish PacsOne Server 6.8.4 has Incorrect Access Control. | 8.8 - HIGH | 2020-09-30 | 2020-10-02 |
Known software with vulnerabilities from Rainbowfishsoftware
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Rainbowfishsoftware | Pacsone Server | 1.1.0 |