midasolutions CVE Vulnerabilities & CVE List (7)

Products (CPE): — CVEs: 7

midasolutions vulnerability overview

Aggregates CVE and security vulnerability intelligence across all midasolutions-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk sql injection and related security problems, affecting vendor surface software deployment and vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2020-15924 There is a SQL Injection in Mida eFramework through 2.9.0 that leads to Information Disclosure. No authentication is required. The injection point resides in one of the authentication parameters. [email protected] 7.5 1.88% 2020-07-24 2024-11-21
CVE-2020-15923 Mida eFramework through 2.9.0 allows unauthenticated ../ directory traversal. [email protected] 7.5 3.32% 2020-07-24 2024-11-21
CVE-2020-15922 There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. Authentication is required. [email protected] 9.8 57.33% 2020-07-24 2024-11-21
CVE-2020-15921 Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities, such as Code Execution. [email protected] 9.8 18.29% 2020-07-24 2024-11-21
CVE-2020-15920 There is an OS Command Injection in Mida eFramework through 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. No authentication is required. [email protected] 9.8 98.28% 2020-07-24 2024-11-21
CVE-2020-15919 A Reflected Cross Site Scripting (XSS) vulnerability was discovered in Mida eFramework through 2.9.0. [email protected] 6.1 0.94% 2020-07-24 2024-11-21
CVE-2020-15918 Multiple Stored Cross Site Scripting (XSS) vulnerabilities were discovered in Mida eFramework through 2.9.0. [email protected] 5.4 0.56% 2020-07-24 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence