Known Vulnerabilities for products from Workforceroi
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Workforceroi".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2002-0584 json | WorkforceROI Xpede 4.1 allows remote attackers to read user timesheets by modifying the TSN ID parameter to the ts_app_proces... | Not Provided | 2002-06-18 | 2025-04-03 |
| CVE-2002-0583 json | WorkforceROI Xpede 4.1 uses a small random namespace (5 alphanumeric characters) for temporary expense claim reports in the /... | Not Provided | 2002-06-18 | 2025-04-03 |
| CVE-2002-0582 json | WorkforceROI Xpede 4.1 stores temporary expense claim reports in a world-readable and indexable /reports/temp directory, whic... | Not Provided | 2002-06-18 | 2025-04-03 |
| CVE-2002-0581 json | WorkforceROI Xpede 4.1 allows remote attackers to execute arbitrary SQL commands and read, modify, or steal credentials from ... | Not Provided | 2002-06-18 | 2025-04-03 |
| CVE-2002-0580 json | WorkforceROI Xpede 4.1 allows remote attackers to obtain the database username via a request to datasource.asp, which leaks t... | Not Provided | 2002-06-18 | 2025-04-03 |
| CVE-2002-0579 json | WorkforceROI Xpede 4.1 allows remote attackers to gain privileges as an Xpede administrator via a direct HTTP request to the ... | Not Provided | 2002-06-18 | 2025-04-03 |
| CVE-2002-0487 json | Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which coul... | Not Provided | 2002-08-12 | 2025-04-03 |
| CVE-2002-0486 json | Intellisol Xpede 4.1 uses weak encryption to store authentication information in cookies, which could allow local users with ... | Not Provided | 2002-08-12 | 2025-04-03 |