adiscon CVE Vulnerabilities & CVE List (8)

Products (CPE): — CVEs: 8

adiscon vulnerability overview

Aggregates CVE and security vulnerability intelligence across all adiscon-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Common weakness patterns include vendor risk cross-site scripting, vendor risk sql injection, and vendor risk buffer overflow, with potential vendor impact session compromise across vendor surface software deployment use cases.

Vulnerability distribution trend (last 24 months)

Showing 18 of 8 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-36306 A Cross Site Scripting (XSS) vulnerability in Adiscon Aiscon LogAnalyzer through 4.1.13 allows a remote attacker to execute arbitrary code via the asktheoracle.php, details.php, index.php, search.php, export.php, reports.php, and statistics.php components. [email protected] 6.1 5.33% 2023-08-08 2024-11-21
CVE-2023-34600 Adiscon LogAnalyzer v4.1.13 and before is vulnerable to SQL Injection. [email protected] 9.8 58.27% 2023-06-20 2024-12-09
CVE-2022-36664 Password Manager for IIS 2.0 has a cross-site scripting (XSS) vulnerability via the /isapi/PasswordManager.dll ResultURL parameter. [email protected] 6.1 2.88% 2022-12-26 2025-04-14
CVE-2021-31738 Adiscon LogAnalyzer 4.1.10 and 4.1.11 allow login.php XSS. [email protected] 6.1 0.34% 2021-06-08 2024-11-21
CVE-2018-19877 login.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field. [email protected] 6.1 12.50% 2018-12-05 2024-11-21
CVE-2014-6070 Multiple cross-site scripting (XSS) vulnerabilities in Adiscon LogAnalyzer before 3.6.6 allow remote attackers to inject arbitrary web script or HTML via the hostname in (1) index.php or (2) detail.php. [email protected] 4.3 7.92% 2014-09-11 2026-05-06
CVE-2012-3790 Cross-site scripting (XSS) vulnerability in index.php in Adiscon LogAnalyzer before 3.4.4 and 3.5.x before 3.5.5 allows remote attackers to inject arbitrary web script or HTML via the highlight parameter in a Search action. [email protected] 4.3 0.33% 2012-06-20 2026-04-29
CVE-2003-1518 Adiscon WinSyslog 4.21 SP1 allows remote attackers to cause a denial of service (CPU consumption) via a long syslog message. [email protected] 7.8 3.68% 2003-12-31 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence