techvill CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

techvill vulnerability overview

Aggregates CVE and security vulnerability intelligence across all techvill-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-37140 PayMoney 3.3 is vulnerable to Client Side Remote Code Execution (RCE). The vulnerability exists on the reply ticket function and upload the malicious file. A calculator will open when the victim who download the file open the RTF file. [email protected] 8.0 1.27% 2022-09-14 2024-11-21
CVE-2022-37137 PayMoney 3.3 is vulnerable to Stored Cross-Site Scripting (XSS) during replying the ticket. The XSS can be obtain from injecting under "Message" field with "description" parameter with the specially crafted payload to gain Stored XSS. The XSS then will prompt after that or can be access from the view ticket function. [email protected] 5.4 0.55% 2022-09-14 2025-06-04
CVE-2022-34991 Paymoney v3.3 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities via the first_name and last_name parameters. [email protected] 5.4 0.42% 2022-07-26 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence