VYPR
Vendor

Metaways

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2023-41364CriSep 1, 2023
    risk 0.64cvss 9.8epss 0.01

    In tine through 2023.01.14.325, the sort parameter of the /index.php endpoint allows SQL Injection.

  • CVE-2011-1666Apr 10, 2011
    risk 0.00cvss epss 0.01

    Metaways Tine 2.0 allows remote attackers to obtain sensitive information via unknown vectors in (1) Crm/Controller.php, (2) Crm/Export/Csv.php, or (3) Calendar/Model/Attender.php, which reveal the full installation path.