Vulnerabilities (CVE)

Filtered by vendor Matera Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-14928 1 Matera 1 Banco 2018-10-11 7.8 HIGH 7.5 HIGH
/contingency/servlet/ServletFileDownload executes as root and provides unauthenticated access to files via the file parameter.
CVE-2018-14926 1 Matera 1 Banco 2018-10-02 6.8 MEDIUM 8.8 HIGH
Matera Banco 1.0.0 allows CSRF, as demonstrated by a /contingency/web/messageSend/messageSendHandler.jsp request.