Loading HuntDB...

Sage

3 Products 6 CVEs

CVE Severity Distribution (All Time)

Critical
1
High
1
Medium
3
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

CVE-2023-2809 HIGH 1 year, 8 months ago

Plaintext credential usage vulnerability in Sage 200 Spain 2023.38.001 version, the exploitation of which could allow a remote attacker to extract SQ…

CVE-2020-7390 MEDIUM 3 years, 10 months ago

Sage X3 Stored XSS Vulnerability on ‘Edit’ Page of User Profile. An authenticated user can pass XSS strings the "First Name," "Last Name," and "Email…

CVE-2020-7389 MEDIUM 3 years, 10 months ago

Sage X3 System CHAINE Variable Script Command Injection. An authenticated user with developer access can pass OS commands via this variable used by t…

CVE-2020-7388 CRITICAL 3 years, 10 months ago

Sage X3 Unauthenticated Remote Command Execution (RCE) as SYSTEM in AdxDSrv.exe component. By editing the client side authentication request, an atta…

CVE-2020-7387 MEDIUM 3 years, 10 months ago

Sage X3 Installation Pathname Disclosure. A specially crafted packet can elicit a response from the AdxDSrv.exe component that reveals the installati…

CVE-2017-3183 UNKNOWN 6 years, 10 months ago

Sage XRT Treasury, version 3, fails to properly restrict database access to authorized users, which may enable any authenticated user to gain full ac…