🏢

Enterprise SaaS

slug: enterprise-saas

🛡 Vulnérabilités associées 37

ID Titre
CVE-2026-79938 Dell PowerProtect Cyber Recovery, versions prior to 20.3, contain an Improper Authentication...
CVE-2026-19851 A Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17...
CVE-2026-71506 Dolibarr before 24.0.0 contains an improper authorization vulnerability in the payments REST API...
CVE-2026-40877 Combodo iTop is a web-based IT service management tool. Prior to 3.2.3, iTop is vulnerable to PHP object injection in the user preference functionality, which can lead to remote code execution. This i...
CVE-2026-78203 Ghostwriter before 7.1.2 fails to validate template ownership in the report template swap...
CVE-2026-30866 Combodo iTop is a web based IT service management tool. Prior to 3.2.3, unauthenticated users can access uploaded sensitive via sniffed url. This issue has been fixed in version 3.2.3.
CVE-2026-54998 Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
CVE-2026-57955 SigNoz through 0.130.1 contains a SQL injection vulnerability that allows authenticated attackers...
CVE-2026-53857 OpenClaw: Zalo allowFrom could bind to mutable display names
CVE-2026-48305 Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write...
CVE-2026-11462 A vulnerability was found in Chengdu Everbrite Network Technology BeikeShop up to 1.6.0.22. This...
CVE-2026-7313 CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from...
CVE-2026-47740 shopper/framework: Authorization bypass in multiple Livewire admin components
CVE-2026-45206 An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to...
CVE-2026-34927 An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to...
CVE-2026-2740 Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and...
CVE-2026-22069 A local privilege escalation vulnerability exists in O+ Connect because it fails to validate the...
CVE-2026-42354 Vulnérabilité dans sso (CVE-2026-42354)
CVE-2026-44335 SSRF (Falsification de requête côté serveur) dans ssrf (CVE-2026-44335)
CVE-2026-33823 Vulnérabilité dans microsoft (CVE-2026-33823)
CVE-2026-6973 KEV [KEV] Vulnérabilité dans Ivanti endpoint-manager-mobile-epmm (CVE-2026-6973)
CVE-2026-38431 Injection de code dans frappe (CVE-2026-38431)
CVE-2024-7399 KEV [KEV] Traversée de chemin dans Samsung magicinfo-9-server (CVE-2024-7399)
CVE-2025-48700 KEV [KEV] XSS (Cross-Site Scripting) dans Synacor zimbra-collaboration-suite-zcs (CVE-2025-48700)
CVE-2024-27199 KEV [KEV] Vulnérabilité dans Jetbrains teamcity (CVE-2024-27199)
CVE-2026-34197 KEV [KEV] Vulnérabilité dans Apache activemq (CVE-2026-34197)
CVE-2020-9715 KEV [KEV] Use-After-Free dans Adobe acrobat (CVE-2020-9715)
CVE-2026-1340 KEV [KEV] Injection de code dans Ivanti endpoint-manager-mobile-epmm (CVE-2026-1340)
CVE-2026-35616 KEV [KEV] Vulnérabilité dans Fortinet forticlient-ems (CVE-2026-35616)
CVE-2025-59249 Vulnérabilité dans microsoft (CVE-2025-59249)

🍪 À propos des cookies

Nous utilisons des cookies pour conserver votre session, mémoriser la langue et améliorer le service.

En savoir plus →