VYPR

PASOE

by Progress (organisation)

CVEs (2)

  • CVE-2023-40051CriJan 18, 2024
    risk 0.59cvss 9.1epss 0.01

    This issue affects Progress Application Server (PAS) for OpenEdge in versions 11.7 prior to 11.7.18, 12.2 prior to 12.2.13, and innovation releases prior to 12.8.0. An attacker can formulate a request for a WEB transport that allows unintended file uploads to a server directory…

  • CVE-2023-40052HigJan 18, 2024
    risk 0.49cvss 7.5epss 0.01

    This issue affects Progress Application Server (PAS) for OpenEdge in versions 11.7 prior to 11.7.18, 12.2 prior to 12.2.13, and innovation releases prior to 12.8.0 .  An attacker who can produce a malformed web request may cause the crash of a PASOE agent potentially…