VYPR

Webseries Payment Application

by Bottomline

CVEs (3)

  • CVE-2005-0285May 2, 2005
    risk 0.00cvss epss 0.01

    Webseries Payment Application does not properly restrict privileged operations, which allows remote authenticated users to gain privileges by directly accessing certain URLs.

  • CVE-2005-0288Jan 11, 2005
    risk 0.00cvss epss 0.00

    The change password functionality in Bottomline Webseries Payment Application does not require the old password when users enter a new password, which could allow remote authenticated users to change other users' passwords.

  • CVE-2005-0287Jan 10, 2005
    risk 0.00cvss epss 0.01

    Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report template with modified ReportPath or ReportName values.