CVE-2024-24275
- EPSS 0.82%
- Veröffentlicht 05.03.2024 23:15:07
- Zuletzt bearbeitet 27.03.2025 21:15:45
Cross Site Scripting vulnerability in Teamwire Windows desktop client v.2.0.1 through v.2.4.0 allows a remote attacker to obtain sensitive information via a crafted payload to the global search function.
CVE-2024-24276
- EPSS 0.34%
- Veröffentlicht 05.03.2024 23:15:07
- Zuletzt bearbeitet 27.03.2025 21:15:46
Cross Site Scripting (XSS) vulnerability in Teamwire Windows desktop client v.2.0.1 through v.2.4.0 allows a remote attacker to obtain sensitive information via a crafted payload to the chat name, message preview, username and group name components.
CVE-2024-24278
- EPSS 0.11%
- Veröffentlicht 05.03.2024 23:15:07
- Zuletzt bearbeitet 23.05.2025 14:45:05
An issue in Teamwire Windows desktop client v.2.0.1 through v.2.4.0 allows a remote attacker to obtain sensitive information via a crafted payload to the message function.
CVE-2020-12621
- EPSS 0.12%
- Veröffentlicht 02.09.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:59:56
The Teamwire application 5.3.0 for Android allows physically proximate attackers to exploit a flaw related to the pass-code component.
CVE-2018-17170
- EPSS 2.92%
- Veröffentlicht 28.06.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 03:54:00
Grouptime Teamwire Desktop Client 1.5.1 prior to 1.9.0 on Windows allows code injection via a template, leading to remote code execution. All backend versions prior to prod-2018-11-13-15-00-42 are affected.
CVE-2018-17560
- EPSS 0.24%
- Veröffentlicht 28.06.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 03:54:36
The admin interface of the Grouptime Teamwire Client 1.5.1 prior to 1.9.0 on-premises messenger server allows stored XSS. All backend versions prior to prod-2018-11-13-15-00-42 are affected.