VYPR

WebLaudos

by Pixeon

CVEs (2)

  • CVE-2025-27956HigJun 2, 2025
    risk 0.49cvss 7.5epss 0.01

    Directory Traversal vulnerability in WebLaudos 24.2 (04) allows a remote attacker to obtain sensitive information via the id parameter.

  • CVE-2025-63243MedNov 19, 2025
    risk 0.30cvss 4.6epss 0.00

    A reflected cross-site scripting (XSS) vulnerability exists in the password change functionality of Pixeon WebLaudos 25.1 (01). The sle_sSenha parameter to the loginAlterarSenha.asp file. An attacker can craft a malicious URL that, when visited by a victim, causes arbitrary…