Vulnerabilities (CVE)

Filtered by vendor Genesys Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-23208 3 Genesys, Linux, Microsoft 3 Administrator Extension, Linux Kernel, Windows 2023-08-22 N/A 6.1 MEDIUM
Genesys Administrator Extension (GAX) before 9.0.105.15 is vulnerable to Cross Site Scripting (XSS) via the Business Structure page of the iWD plugin, aka GAX-11261.
CVE-2021-26787 1 Genesys 1 Workforce Management 2021-12-15 4.3 MEDIUM 6.1 MEDIUM
A cross site scripting (XSS) vulnerability in Genesys Workforce Management 8.5.214.20 can occur (during record deletion) via the Time-off parameter.
CVE-2019-17176 1 Genesys 1 Eservices Chat 2019-10-16 4.3 MEDIUM 6.1 MEDIUM
Genesys PureEngage Digital (eServices) 8.1.x allows XSS via HtmlChatPanel.jsp or HtmlChatFrameSet.jsp (ActionColor, ClientNickNameColor, Email, email, or email_address parameter).