intersystems
Databasescommercial
Top products
Latest CVEs
The 10 most recently published vulnerabilities affecting intersystems.
- CVE-2018-17151Intersystems Cache 2017.2.2.865.0 has Incorrect Access Control.5.4
- CVE-2018-17152Intersystems Cache 2017.2.2.865.0 allows XXE.6.4
- CVE-2018-17150Intersystems Cache 2017.2.2.865.0 allows XSS.6.1
- CVE-2007-4427Unspecified vulnerability in the login page redirection logic in the Cache' Server Page (CSP) implementation in InterSystems Cache' 2007.1.0.369.0 and 2007.1.1.420.0 allows remote authenticated use...3.5
- CVE-2004-2684Unspecified vulnerability in the %template package in InterSystems Cache' 5.0 allows attackers to access certain files on a server, including (1) cache.key and (2) cache.dat, related to .csp files ...2.1
- CVE-2004-2683Unspecified vulnerability in the %XML.Utils.SchemaServer class in InterSystems Cache' 5.0 allows attackers to access arbitrary files on a server.2.1
- CVE-2003-1333Unspecified vulnerability in the Cache' Server Page (CSP) implementation in InterSystems Cache' 4.0.3 through 5.0.5 allows remote attackers to "gain complete control" of a server.10.0
- CVE-2007-0437Multiple cross-site scripting (XSS) vulnerabilities in the sample Cache' Server Page (CSP) scripts in InterSystems Cache' allow remote attackers to inject arbitrary web script or HTML via (1) the T...3.5
- CVE-2003-0498Caché Database 5.x installs the /cachesys/csp directory with insecure permissions, which allows local users to execute arbitrary code by adding server-side scripts that are executed with root priv...7.2
- CVE-2003-0497Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privileges by modifying cache and executing it via cuxs.7.2