CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via documentdelete?file=/.. for file deletion. |
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via documentprop?file=/.. for file reading. |
In NCH Quorum v2.03 and earlier, an authenticated user can use directory traversal via logprop?file=/.. for file reading. |
In NCH Quorum v2.03 and earlier, XSS exists via /conferencebrowseuploadfile?confid= (reflected). |
In NCH Quorum v2.03 and earlier, XSS exists via /conference?id= (reflected). |
In NCH Quorum v2.03 and earlier, XSS exists via /uploaddoc?id= (reflected). |
In NCH Quorum v2.03 and earlier, XSS exists via Conference Description (stored). |
In NCH Quorum v2.03 and earlier, XSS exists via User Display Name (stored). |