← Back

Snapt

snapt

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Aria
aria

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Snapt
1Aria
Nov 21, 2024
Mar 21, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
The snaptPowered2 component of Snapt Aria v12.8 was discovered to contain a command injection vulnerability. This vulnerability allows authenticated attackers to execute arbitrary commands.
1Snapt
1Aria
Nov 21, 2024
Mar 21, 2022
N/A· v4
3.5 LOW· v3
3.5 LOW· v2
An insecure permissions vulnerability in Snapt Aria v12.8 allows unauthenticated attackers to send e-mails from spoofed users' accounts.
1Snapt
1Aria
Nov 21, 2024
Mar 21, 2022
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
A Cross-Site Request Forgery (CSRF) in the management portal of Snapt Aria v12.8 allows attackers to escalate privileges and execute arbitrary code via unspecified vectors.