This page aggregates publicly disclosed CVE and security risk information related to boolebox, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2020-13247 | BooleBox Secure File Sharing Utility before 4.2.3.0 allows CSV injection via a crafted user name that is mishandled during export from the activity logs in the Audit Area. | [email protected] | 7.3 | 0.66% | 2020-06-24 | 2024-11-21 |
| CVE-2020-13248 | BooleBox Secure File Sharing Utility before 4.2.3.0 allows stored XSS via a crafted avatar field within My Account JSON data to Account.aspx. | [email protected] | 5.4 | 0.40% | 2020-06-24 | 2024-11-21 |