Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Valeapp
(Oceanicsoft)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 5 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-09-27 | CVE-2024-8607 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oceanic Software ValeApp allows SQL Injection.This issue affects ValeApp: before v2.0.0. | Valeapp | 9.8 | ||
2024-09-27 | CVE-2024-8608 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Oceanic Software ValeApp allows Stored XSS.This issue affects ValeApp: before v2.0.0. | Valeapp | 5.4 | ||
2024-09-27 | CVE-2024-8609 | Insertion of Sensitive Information into Log File vulnerability in Oceanic Software ValeApp allows Query System for Information.This issue affects ValeApp: before v2.0.0. | Valeapp | 7.5 | ||
2024-09-27 | CVE-2024-8643 | Session Fixation vulnerability in Oceanic Software ValeApp allows Brute Force, Session Hijacking.This issue affects ValeApp: before v2.0.0. | Valeapp | 9.8 | ||
2024-09-27 | CVE-2024-8644 | Cleartext Storage of Sensitive Information in a Cookie vulnerability in Oceanic Software ValeApp allows Protocol Manipulation, : JSON Hijacking (aka JavaScript Hijacking).This issue affects ValeApp: before v2.0.0. | Valeapp | 7.5 |