Known Vulnerabilities for products from Tcman
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Tcman".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-36277 json | The 'sReferencia', 'sDescripcion', 'txtCodigo' and 'txtDescripcion' parameters, in the frmGestionStock.aspx and frmEditServic... | 6.1 - MEDIUM | 2023-10-04 | 2023-10-06 |
| CVE-2022-36276 json | TCMAN GIM v8.0.1 is vulnerable to a SQL injection via the 'SqlWhere' parameter inside the function 'BuscarESM'. The exploitat... | 9.8 - CRITICAL | 2023-10-04 | 2023-10-06 |
| CVE-2021-40853 json | TCMAN GIM does not perform an authorization check when trying to access determined resources. A remote attacker could exploit... | 7.2 - HIGH | 2021-12-17 | 2023-11-23 |
| CVE-2021-40852 json | TCMAN GIM is affected by an open redirect vulnerability. This vulnerability allows the redirection of user navigation to page... | 6.1 - MEDIUM | 2021-12-17 | 2021-12-21 |
| CVE-2021-40851 json | TCMAN GIM is vulnerable to a lack of authorization in all available webservice methods listed in /PC/WebService.asmx. The exp... | 7.5 - HIGH | 2021-12-17 | 2021-12-21 |
| CVE-2021-40850 json | TCMAN GIM is vulnerable to a SQL injection vulnerability inside several available webservice methods in /PC/WebService.asmx. | 9.8 - CRITICAL | 2021-12-17 | 2021-12-21 |
| CVE-2021-4046 json | The m_txtNom y m_txtCognoms parameters in TCMAN GIM v8.01 allow an attacker to perform persistent XSS attacks. This vulnerabi... | 5.4 - MEDIUM | 2022-02-11 | 2023-11-22 |