Known Vulnerabilities for products from Synametrics
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Synametrics".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-26251 json | The HTTP interface of Synaman v5.1 and below was discovered to allow authenticated attackers to execute arbitrary code and es... | Not Provided | 2022-04-06 | 2026-07-09 |
| CVE-2022-26250 json | Synaman v5.1 and below was discovered to contain weak file permissions which allows authenticated attackers to escalate privi... | Not Provided | 2022-04-06 | 2026-07-09 |
| CVE-2022-22828 json | An insecure direct object reference for the file-download URL in Synametrics SynaMan before 5.0 allows a remote attacker to a... | 7.5 - HIGH | 2022-01-27 | 2022-02-02 |
| CVE-2018-10814 json | Synametrics SynaMan 4.0 build 1488 uses cleartext password storage for SMTP credentials. | 7.8 - HIGH | 2018-09-14 | 2019-10-03 |
| CVE-2018-10763 json | Multiple cross-site scripting (XSS) vulnerabilities in Synametrics SynaMan 4.0 build 1488 via the (1) Main heading or (2) Sub... | 4.8 - MEDIUM | 2018-09-14 | 2018-11-09 |
| CVE-2015-3141 json | Multiple cross-site request forgery (CSRF) vulnerabilities in Synametrics Technologies Xeams 4.5 Build 5755 and earlier allow... | Not Provided | 2015-05-20 | 2026-05-06 |
| CVE-2015-3140 json | Multiple cross-site request forgery (CSRF) vulnerabilities in Synametrics Technologies SynaMan before 3.5 Build 1451, Syncrif... | 8.8 - HIGH | 2019-11-21 | 2019-12-04 |
| CVE-2012-2569 json | Cross-site scripting (XSS) vulnerability in Synametrics Technologies Xeams 4.4 Build 5720 allows remote attackers to inject a... | Not Provided | 2014-06-19 | 2026-05-06 |