Known Vulnerabilities for products from Weberp
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Weberp".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-22474 json | In webERP 4.15, the ManualContents.php file allows users to specify the "Language" parameter, which can lead to local file in... | 6.5 - MEDIUM | 2021-02-22 | 2021-07-21 |
| CVE-2019-13292 json | A SQL Injection issue was discovered in webERP 4.15. Payments.php accepts payment data in base64 format. After this is decode... | 9.8 - CRITICAL | 2019-07-04 | 2019-07-10 |
| CVE-2019-7755 json | In webERP 4.15, the Import Bank Transactions function fails to sanitize the content of imported MT940 bank statement files, r... | 8.8 - HIGH | 2020-03-30 | 2020-04-02 |
| CVE-2018-20420 json | In webERP 4.15, Z_CreateCompanyTemplateFile.php has Incorrect Access Control, leading to the overwrite of an existing .sql fi... | 4.9 - MEDIUM | 2018-12-24 | 2019-10-03 |
| CVE-2018-19436 json | An issue was discovered in the Manufacturing component in webERP 4.15. CollectiveWorkOrderCost.php has Blind SQL Injection vi... | 7.2 - HIGH | 2018-11-22 | 2018-12-18 |
| CVE-2018-19435 json | An issue was discovered in the Sales component in webERP 4.15. SalesInquiry.php has SQL Injection via the SortBy parameter. | 7.2 - HIGH | 2018-11-22 | 2018-12-18 |
| CVE-2018-19434 json | An issue was discovered on the "Bank Account Matching - Receipts" screen of the General Ledger component in webERP 4.15. Bank... | 7.2 - HIGH | 2018-11-22 | 2018-12-18 |
| CVE-2015-10018 json | A vulnerability has been found in DBRisinajumi d2files and classified as critical. Affected by this vulnerability is the func... | 9.8 - CRITICAL | 2023-01-06 | 2023-11-07 |
Known software with vulnerabilities from Weberp
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Weberp | Weberp | 2.9 |