Known Vulnerabilities for products from Squaredup
Listed below are 12 of the newest known vulnerabilities associated with the vendor "Squaredup".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-46786 json | SquaredUp Dashboard Server SCOM edition before 5.7.1 GA allows XSS (issue 2 of 2). | 5.4 - MEDIUM | 2023-02-23 | 2023-03-03 |
| CVE-2022-46785 json | SquaredUp Dashboard Server SCOM edition before 5.7.1 GA allows XSS (issue 1 of 2). | 6.1 - MEDIUM | 2023-02-23 | 2023-03-03 |
| CVE-2022-46784 json | SquaredUp Dashboard Server SCOM edition before 5.7.1 GA allows open redirection. (The issue was originally found in 5.5.1 GA.... | 6.1 - MEDIUM | 2023-02-23 | 2023-03-03 |
| CVE-2021-40096 json | A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attack... | 5.4 - MEDIUM | 2021-12-07 | 2021-12-14 |
| CVE-2021-40095 json | An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptible to... | 4.9 - MEDIUM | 2021-12-07 | 2021-12-07 |
| CVE-2021-40094 json | A DOM-based XSS vulnerability affects SquaredUp for SCOM 5.2.1.6654. If successfully exploited, this vulnerability may allow ... | 5.4 - MEDIUM | 2021-12-07 | 2021-12-07 |
| CVE-2021-40093 json | A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attack... | 5.4 - MEDIUM | 2021-12-07 | 2021-12-07 |
| CVE-2021-40092 json | A cross-site scripting (XSS) vulnerability in Image Tile in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject a... | 5.4 - MEDIUM | 2021-12-07 | 2021-12-07 |
| CVE-2021-40091 json | An SSRF issue was discovered in SquaredUp for SCOM 5.2.1.6654. | 9.8 - CRITICAL | 2021-12-06 | 2021-12-07 |
| CVE-2020-9390 json | SquaredUp allowed Stored XSS before version 4.6.0. A user was able to create a dashboard that executed malicious content in i... | 5.4 - MEDIUM | 2021-02-03 | 2023-02-23 |
| CVE-2020-9389 json | A username enumeration issue was discovered in SquaredUp before version 4.6.0. The login functionality was implemented in a w... | 3.7 - LOW | 2021-02-03 | 2022-02-22 |
| CVE-2020-9388 json | CSRF protection was not present in SquaredUp before version 4.6.0. A CSRF attack could have been possible by an administrator... | 6.5 - MEDIUM | 2021-02-03 | 2023-02-23 |