VYPR

Exinda AI

by Gfi

CVEs (3)

  • CVE-2026-74237MedSep 4, 2026
    risk 0.42cvss 6.5epss

    GFI Exinda AI and ClearView before 7.6.5 contains an argument injection vulnerability in the Tools Iperf Client functionality. The web_tools_cmd() function constructs an iperf command using the server and options parameters without sanitization, permitting injection of arbitrary…

  • CVE-2026-74236MedSep 4, 2026
    risk 0.42cvss 6.5epss

    GFI Exinda AI and ClearView before 7.6.5 contains a path traversal vulnerability in the diagnostic file deletion handler. The unlink_or_email_file() function accepts parameters prefixed with v_file_row_ and appends their values directly to a base directory path without…

  • CVE-2026-74235MedSep 4, 2026
    risk 0.32cvss 4.9epss

    GFI Exinda AI and ClearView before 7.6.5 contains a path traversal vulnerability in the system maintenance configuration download handler. The wcf_handle_download() function accepts parameters prefixed with v_del_ and appends their values directly to the base configuration…