CVE-2020-16275
- EPSS 0.36%
- Veröffentlicht 10.08.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:04
A cross-site scripting (XSS) vulnerability in the Credential Manager component in SAINT Security Suite 8.0 through 9.8.20 could allow arbitrary script to run in the context of a logged-in user when the user clicks on a specially crafted link.
CVE-2020-16276
- EPSS 0.71%
- Veröffentlicht 10.08.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:04
An SQL injection vulnerability in the Assets component of SAINT Security Suite 8.0 through 9.8.20 allows a remote, authenticated attacker to gain unauthorized access to the database.
CVE-2020-16277
- EPSS 0.71%
- Veröffentlicht 10.08.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:05
An SQL injection vulnerability in the Analytics component of SAINT Security Suite 8.0 through 9.8.20 allows a remote, authenticated attacker to gain unauthorized access to the database.
CVE-2020-16278
- EPSS 0.27%
- Veröffentlicht 10.08.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:05
A cross-site scripting (XSS) vulnerability in the Permissions component in SAINT Security Suite 8.0 through 9.8.20 could allow arbitrary script to run in the context of a logged-in user when the user clicks on a specially crafted link.