CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Jenkins 1Compuware Topaz For Total Test May 8, 2025 Oct 19, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 Jenkins Compuware Topaz for Total Test Plugin 2.4.8 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks. |
1Jenkins 1Compuware Topaz For Total Test May 8, 2025 Oct 19, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 Jenkins Compuware Topaz for Total Test Plugin 2.4.8 and earlier implements an agent/controller message that does not limit where it can be executed, allowing attackers able to control agent processes to read arbitrary fi...Show more |
1Jenkins 1Compuware Topaz For Total Test May 8, 2025 Oct 19, 2022 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Jenkins Compuware Topaz for Total Test Plugin 2.4.8 and earlier implements an agent/controller message that does not limit where it can be executed, allowing attackers able to control agent processes to obtain the values...Show more |
1Jenkins 1Compuware Topaz For Total Test May 8, 2025 Oct 19, 2022 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Jenkins Compuware Topaz for Total Test Plugin 2.4.8 and earlier does not perform permission checks in several HTTP endpoints, allowing attackers with Overall/Read permission to enumerate credentials IDs of credentials st...Show more |