Buildmaster
by Inedo
CVEs (4)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2017-16521 | Cri | 0.64 | 9.8 | 0.01 | Nov 10, 2017 | In Inedo BuildMaster before 5.8.2, XslTransform was used where XslCompiledTransform should have been used. | |
| CVE-2017-16520 | Hig | 0.49 | 7.5 | 0.00 | Nov 11, 2017 | Inedo BuildMaster before 5.8.2 does not properly restrict creation of RequireManageAllPrivileges event listeners. | |
| CVE-2017-16761 | Med | 0.40 | 6.1 | 0.00 | Nov 10, 2017 | An Open Redirect vulnerability in Inedo BuildMaster before 5.8.2 allows remote attackers to redirect users to arbitrary web sites. | |
| CVE-2017-16760 | Med | 0.40 | 6.1 | 0.00 | Nov 10, 2017 | Inedo BuildMaster before 5.8.2 has XSS. |