eG Innovations eG Manager 7.1.2

CPE Details

eG Innovations eG Manager 7.1.2
7.1.2
2020-02-07
16h38 +00:00
2020-02-07
16h38 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:eginnovations:eg_manager:7.1.2:*:*:*:*:*:*:*

Informations

Vendor

eginnovations

Product

eg_manager

Version

7.1.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-29594 2022-06-02 20h43 +00:00 eG Agent before 7.2 has weak file permissions that enable escalation of privileges to SYSTEM.
7.8
High
CVE-2020-8591 2020-02-03 19h05 +00:00 eG Manager 7.1.2 allows authentication bypass via a com.egurkha.EgLoginServlet?uname=admin&upass=&accessKey=eGm0n1t0r request.
9.8
Critical
CVE-2020-8592 2020-02-03 19h05 +00:00 eG Manager 7.1.2 allows SQL Injection via the user parameter to com.eg.LoginHelperServlet (aka the Forgot Password feature).
9.8
Critical