Aquaforest
Products
1- 6 CVEs
Recent CVEs
6| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-9325 | Hig | 0.49 | 7.5 | 0.02 | Mar 18, 2020 | Aquaforest TIFF Server 4.0 allows Unauthenticated Arbitrary File Download. | ||
| CVE-2020-9324 | Hig | 0.49 | 7.5 | 0.01 | Mar 18, 2020 | Aquaforest TIFF Server 4.0 allows Unauthenticated SMB Hash Capture via UNC. | ||
| CVE-2023-6352 | Med | 0.35 | 5.3 | 0.01 | Nov 30, 2023 | The default configuration of Aquaforest TIFF Server allows access to arbitrary file paths, subject to any restrictions imposed by Internet Information Services (IIS) or Microsoft Windows. Depending on how a web application uses and configures TIFF Server, a remote attacker may… | ||
| CVE-2023-6344 | Med | 0.35 | 5.3 | 0.01 | Nov 30, 2023 | Tyler Technologies Court Case Management Plus allows a remote, unauthenticated attacker to enumerate directories using the tiffserver/te003.aspx or te004.aspx 'ifolder' parameter. This behavior is related to the use of a deprecated version of Aquaforest TIFF Server, possibly… | ||
| CVE-2023-6343 | Med | 0.35 | 5.3 | 0.01 | Nov 30, 2023 | Tyler Technologies Court Case Management Plus allows a remote, unauthenticated attacker to enumerate and access sensitive files using the tiffserver/tssp.aspx 'FN' and 'PN' parameters. This behavior is related to the use of a deprecated version of Aquaforest TIFF Server,… | ||
| CVE-2020-9323 | Med | 0.35 | 5.3 | 0.02 | Mar 18, 2020 | Aquaforest TIFF Server 4.0 allows Unauthenticated File and Directory Enumeration via tiffserver/tssp.aspx. |
- risk 0.49cvss 7.5epss 0.02
Aquaforest TIFF Server 4.0 allows Unauthenticated Arbitrary File Download.
- risk 0.49cvss 7.5epss 0.01
Aquaforest TIFF Server 4.0 allows Unauthenticated SMB Hash Capture via UNC.
- risk 0.35cvss 5.3epss 0.01
The default configuration of Aquaforest TIFF Server allows access to arbitrary file paths, subject to any restrictions imposed by Internet Information Services (IIS) or Microsoft Windows. Depending on how a web application uses and configures TIFF Server, a remote attacker may…
- risk 0.35cvss 5.3epss 0.01
Tyler Technologies Court Case Management Plus allows a remote, unauthenticated attacker to enumerate directories using the tiffserver/te003.aspx or te004.aspx 'ifolder' parameter. This behavior is related to the use of a deprecated version of Aquaforest TIFF Server, possibly…
- risk 0.35cvss 5.3epss 0.01
Tyler Technologies Court Case Management Plus allows a remote, unauthenticated attacker to enumerate and access sensitive files using the tiffserver/tssp.aspx 'FN' and 'PN' parameters. This behavior is related to the use of a deprecated version of Aquaforest TIFF Server,…
- risk 0.35cvss 5.3epss 0.02
Aquaforest TIFF Server 4.0 allows Unauthenticated File and Directory Enumeration via tiffserver/tssp.aspx.