Infor
infor
5 CVEs • 5 products
Products (5)
Click to collapseToggle
Products (5)
Click to collapse
CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Infor SyteLine ERP uses hard-coded static cryptographic keys to encrypt stored credentials, including user passwords, database connection strings, and API keys. The encryption keys are identical across all installations....Show more |
Cross Site Scripting vulnerability in Infor Global HR GHR v.11.23.03.00.21 and before allows a remote attacker to execute arbitrary code via the class parameter. |
1Infor 1Enterprise Asset Management May 13, 2026 May 16, 2017 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 INFOR EAM V11.0 Build 201410 has XSS via comment fields. |
1Infor 1Enterprise Asset Management May 13, 2026 May 16, 2017 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 INFOR EAM V11.0 Build 201410 has SQL injection via search fields, related to the filtervalue parameter. |
1Infor 2Eclient Enspire Distribution Management SolutionApr 29, 2026 Nov 1, 2011 N/A· v4 N/A· v3 7.5 HIGH· v2 SQL injection vulnerability in eClient 7.3.2.3 in Enspire Distribution Management Solution 7.3.2.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. |