RSS   Vulnerabilities for 'Webseries payment application'   RSS

2005-01-11
 
CVE-2005-0288

 

 
The change password functionality in Bottomline Webseries Payment Application does not require the old password when users enter a new password, which could allow remote authenticated users to change other users' passwords.

 
2005-01-10
 
CVE-2005-0287

 

 
Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report template with modified ReportPath or ReportName values.

 
2005-05-02
 
CVE-2005-0285

 

 
Webseries Payment Application does not properly restrict privileged operations, which allows remote authenticated users to gain privileges by directly accessing certain URLs.

 

 >>> Vendor: Bottomline 2 Products
Webseries payment application
Transform foundation server


Copyright 2024, cxsecurity.com

 

Back to Top