Vulnerabilities (CVE)

Filtered by vendor Quest Subscribe
Filtered by product Policy Authority For Unified Communications
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35205 1 Quest 1 Policy Authority For Unified Communications 2022-04-25 7.5 HIGH 9.8 CRITICAL
** UNSUPPORTED WHEN ASSIGNED ** Server Side Request Forgery (SSRF) in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows attackers to scan internal ports and make outbound connections via the initFile.jsp file. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.