Vendor
Infor
Products
3
CVEs
3
Across products
4
Status
Private
Products
3- 2 CVEs
- 1 CVE
- 1 CVE
Recent CVEs
3| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2017-7952 | Hig | 0.60 | 8.8 | 0.00 | May 16, 2017 | INFOR EAM V11.0 Build 201410 has SQL injection via search fields, related to the filtervalue parameter. | |
| CVE-2017-7953 | Med | 0.38 | 5.4 | 0.00 | May 16, 2017 | INFOR EAM V11.0 Build 201410 has XSS via comment fields. | |
| CVE-2011-1915 | 0.00 | — | 0.00 | Nov 1, 2011 | SQL injection vulnerability in eClient 7.3.2.3 in Enspire Distribution Management Solution 7.3.2.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. |
- risk 0.60cvss 8.8epss 0.00
INFOR EAM V11.0 Build 201410 has SQL injection via search fields, related to the filtervalue parameter.
- risk 0.38cvss 5.4epss 0.00
INFOR EAM V11.0 Build 201410 has XSS via comment fields.
- CVE-2011-1915Nov 1, 2011risk 0.00cvss —epss 0.00
SQL injection vulnerability in eClient 7.3.2.3 in Enspire Distribution Management Solution 7.3.2.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.