CVE-2024-33647
- EPSS 0.14%
- Veröffentlicht 14.05.2024 16:17:21
- Zuletzt bearbeitet 27.08.2025 22:15:36
A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The Apache Lucene based query engine in the affected application lacks proper access controls. This could allow an authenticated user to query items beyond the user's allow...
CVE-2019-13935
- EPSS 0.4%
- Veröffentlicht 27.11.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:25:43
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webclient of Siemens AG Polarion could allow an attacker to exploit a reflected XSS vulnerability. This issue affects: Siemens AG Polarion All versi...
CVE-2019-13936
- EPSS 0.4%
- Veröffentlicht 27.11.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:25:44
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webclient of Siemens AG Polarion could allow an attacker to exploit a persistent XSS vulnerability. This issue affects: Siemens AG Polarion All vers...
CVE-2019-13934
- EPSS 0.4%
- Veröffentlicht 27.11.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:25:43
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webclient of Siemens AG Polarion could allow an attacker to exploit a reflected XSS vulnerability. This issue affects: Siemens AG Polarion All versi...