VYPR

Visual Planning

by Stilog

CVEs (3)

  • CVE-2023-49232CriMar 29, 2024
    risk 0.64cvss 9.8epss 0.01

    An authentication bypass vulnerability was found in Stilog Visual Planning 8. It allows an unauthenticated attacker to brute-force the password reset PINs of administrative users.

  • CVE-2023-49231CriMar 29, 2024
    risk 0.64cvss 9.8epss 0.01

    An authentication bypass vulnerability was found in Stilog Visual Planning 8. It allows an unauthenticated attacker to receive an administrative API token.

  • CVE-2023-49234MedMar 29, 2024
    risk 0.41cvss 6.3epss 0.00

    An XML external entity (XXE) vulnerability was found in Stilog Visual Planning 8. It allows an authenticated attacker to access local server files and exfiltrate data to an external server.