VYPR

Engineering & Lifecycle Management (aka pdm)

by Didotech srl

CVEs (2)

  • CVE-2022-34355Oct 6, 2023
    risk 0.00cvss epss 0.00

    IBM Jazz Foundation (IBM Engineering Lifecycle Management 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2) could disclose sensitive version information to a user that could be used in further attacks against the system. IBM X-Force ID: 230498.

  • CVE-2023-40958Sep 14, 2023
    risk 0.00cvss epss 0.02

    A SQL injection vulnerability in Didotech srl Engineering & Lifecycle Management (aka pdm) v.14.0, v.15.0 and v.16.0 fixed in pdm-14.0.1.0.0, pdm-15.0.1.0.0, and pdm-16.0.1.0.0 allows a remote authenticated attacker to execute arbitrary code via the query parameter in…