Saphira Connect vulnerabilities

5 known vulnerabilities affecting saphira/saphira_connect.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2023-4661CRITICALCVSS 9.8fixed in 92023-09-15
CVE-2023-4661 [CRITICAL] CWE-89 CVE-2023-4661: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saphira Saphira Connect allows SQL Injection.This issue affects Saphira Connect: before 9.
cvelistv5nvd
CVE-2023-4662CRITICALCVSS 9.8fixed in 92023-09-15
CVE-2023-4662 [CRITICAL] CWE-250 CVE-2023-4662: Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code In Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code Inclusion.This issue affects Saphira Connect: before 9.
cvelistv5nvd
CVE-2023-4665HIGHCVSS 8.8fixed in 92023-09-15
CVE-2023-4665 [HIGH] CWE-279 CVE-2023-4665: Incorrect Execution-Assigned Permissions vulnerability in Saphira Saphira Connect allows Privilege E Incorrect Execution-Assigned Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation.This issue affects Saphira Connect: before 9.
cvelistv5nvd
CVE-2023-4664HIGHCVSS 8.8fixed in 92023-09-15
CVE-2023-4664 [HIGH] CWE-276 CVE-2023-4664: Incorrect Default Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation.T Incorrect Default Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation.This issue affects Saphira Connect: before 9.
cvelistv5nvd
CVE-2023-4663MEDIUMCVSS 6.1fixed in 92023-09-15
CVE-2023-4663 [MEDIUM] CWE-80 CVE-2023-4663: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Saphi Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Saphira Saphira Connect allows Reflected XSS.This issue affects Saphira Connect: before 9.
cvelistv5nvd