NA - CVE-2024-40404 - Cybele Software Thinfinity Workspace before...
Cybele Software Thinfinity Workspace before v7.0.2.113 was discovered to contain an access control issue in the API endpoint where Web Sockets connections are established.
NA - CVE-2024-40405 - Incorrect access control in Cybele Software...
Incorrect access control in Cybele Software Thinfinity Workspace before v7.0.3.109 allows attackers to gain access to a secondary broker via a crafted request.
NA - CVE-2024-40407 - A full path disclosure in Cybele Software...
A full path disclosure in Cybele Software Thinfinity Workspace before v7.0.2.113 allows attackers to obtain the root path of the application via unspecified vectors.
NA - CVE-2024-40408 - Cybele Software Thinfinity Workspace before...
Cybele Software Thinfinity Workspace before v7.0.2.113 was discovered to contain an access control issue in the Create Profile section. This vulnerability allows attackers to create arbitrary user...
NA - CVE-2021-27700 - SOCIFI Socifi Guest wifi as SAAS wifi portal is...
SOCIFI Socifi Guest wifi as SAAS wifi portal is affected by Insecure Permissions. Any authorized customer with partner mode can switch to another customer dashboard and perform actions like modify...
NA - CVE-2021-27701 - SOCIFI Socifi Guest wifi as SAAS is affected by...
SOCIFI Socifi Guest wifi as SAAS is affected by Cross Site Request Forgery (CSRF) via the Socifi wifi portal. The application does not contain a CSRF token and request validation. An attacker can...