NA - CVE-2024-7096 - A privilege escalation vulnerability exists in...
A privilege escalation vulnerability exists in multiple [Vendor Name] products due to a business logic flaw in SOAP admin services. A malicious actor can create a new user with elevated permissions...
NA - CVE-2024-7097 - An incorrect authorization vulnerability exists...
An incorrect authorization vulnerability exists in multiple WSO2 products due to a flaw in the SOAP admin service, which allows user account creation regardless of the self-registration...
NA - CVE-2025-0602 - A stored Cross-site Scripting (XSS)...
A stored Cross-site Scripting (XSS) vulnerability affecting Compare in Collaborative Industry Innovator from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2025x allows an attacker to...
NA - CVE-2025-4983 - A stored Cross-site Scripting (XSS)...
A stored Cross-site Scripting (XSS) vulnerability affecting City Referential in City Referential Manager on Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in...
NA - CVE-2025-4984 - A stored Cross-site Scripting (XSS)...
A stored Cross-site Scripting (XSS) vulnerability affecting City Discover in City Referential Manager on Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in...
NA - CVE-2025-4985 - A stored Cross-site Scripting (XSS)...
A stored Cross-site Scripting (XSS) vulnerability affecting Risk Management in Project Portfolio Manager from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x allows an attacker to...