Buildmaster
by Inedo
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-16521 | Cri | 0.64 | 9.8 | 0.02 | Nov 10, 2017 | In Inedo BuildMaster before 5.8.2, XslTransform was used where XslCompiledTransform should have been used. | ||
| CVE-2017-16520 | Hig | 0.49 | 7.5 | 0.01 | Nov 11, 2017 | Inedo BuildMaster before 5.8.2 does not properly restrict creation of RequireManageAllPrivileges event listeners. | ||
| CVE-2017-16761 | Med | 0.40 | 6.1 | 0.01 | Nov 10, 2017 | An Open Redirect vulnerability in Inedo BuildMaster before 5.8.2 allows remote attackers to redirect users to arbitrary web sites. | ||
| CVE-2017-16760 | Med | 0.40 | 6.1 | 0.01 | Nov 10, 2017 | Inedo BuildMaster before 5.8.2 has XSS. |
- risk 0.64cvss 9.8epss 0.02
In Inedo BuildMaster before 5.8.2, XslTransform was used where XslCompiledTransform should have been used.
- risk 0.49cvss 7.5epss 0.01
Inedo BuildMaster before 5.8.2 does not properly restrict creation of RequireManageAllPrivileges event listeners.
- risk 0.40cvss 6.1epss 0.01
An Open Redirect vulnerability in Inedo BuildMaster before 5.8.2 allows remote attackers to redirect users to arbitrary web sites.
- risk 0.40cvss 6.1epss 0.01
Inedo BuildMaster before 5.8.2 has XSS.