Sparxsystems

Enterprise Architect

3 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.4%
  • Veröffentlicht 19.05.2026 12:59:29
  • Zuletzt bearbeitet 19.05.2026 14:45:59

Sparx Enterprise Architect software has a security feature that limits user's actions to those specified in the role. An authenticated attacker can modify the Enterprise Architect client behavior (e.g. using a debugger) and log in as any other user ...

  • EPSS 0.12%
  • Veröffentlicht 16.04.2026 12:40:08
  • Zuletzt bearbeitet 07.10.2026 09:10:00

Insufficiently Protected Credentials in Sparx Systems Pty Ltd. Sparx Enterprise Architect. Client does not verify the receiver of OAuth2 credentials during OpenID authentication

Exploit
  • EPSS 0.63%
  • Veröffentlicht 31.01.2024 21:15:08
  • Zuletzt bearbeitet 17.06.2025 15:15:35

SQL injection vulnerability in Enterprise Architect 16.0.1605 32-bit allows attackers to run arbitrary SQL commands via the Find parameter in the Select Classifier dialog box..