squaredup
Enterprise Softwarecommercial
Top products
Latest CVEs
The 13 most recently published vulnerabilities affecting squaredup.
- CVE-2024-45180SquaredUp DS for SCOM 6.2.1.11104 allows XSS.5.4
- CVE-2022-46785SquaredUp Dashboard Server SCOM edition before 5.7.1 GA allows XSS (issue 1 of 2).6.1
- CVE-2022-46786SquaredUp Dashboard Server SCOM edition before 5.7.1 GA allows XSS (issue 2 of 2).5.4
- CVE-2022-46784SquaredUp Dashboard Server SCOM edition before 5.7.1 GA allows open redirection. (The issue was originally found in 5.5.1 GA.)6.1
- CVE-2021-40096A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via modification of the autho...5.4
- CVE-2021-40095An issue was discovered in SquaredUp for SCOM 5.2.1.6654. The Download Log feature in System / Maintenance was susceptible to a local file inclusion vulnerability (when processing remote input in t...4.9
- CVE-2021-40094A DOM-based XSS vulnerability affects SquaredUp for SCOM 5.2.1.6654. If successfully exploited, this vulnerability may allow attackers to inject malicious code into a user's device.5.4
- CVE-2021-40093A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via dashboard actions.5.4
- CVE-2021-40092A cross-site scripting (XSS) vulnerability in Image Tile in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via an SVG file.5.4
- CVE-2021-40091An SSRF issue was discovered in SquaredUp for SCOM 5.2.1.6654.9.8
- CVE-2020-9389A username enumeration issue was discovered in SquaredUp before version 4.6.0. The login functionality was implemented in a way that would enable a malicious user to guess valid username due to a d...3.7
- CVE-2020-9390SquaredUp allowed Stored XSS before version 4.6.0. A user was able to create a dashboard that executed malicious content in iframe or by uploading an SVG that contained a script.5.4
- CVE-2020-9388CSRF protection was not present in SquaredUp before version 4.6.0. A CSRF attack could have been possible by an administrator executing arbitrary code in a HTML dashboard tile via a crafted HTML pa...6.5