VYPR
Vendor

Ready

Products
3
CVEs
3
Across products
3
Status
Private

Products

3

Recent CVEs

3
  • CVE-2025-1981CriApr 16, 2025
    risk 0.61cvss epss 0.01

    Improper neutralization of input provided by a low-privileged user into a file search functionality in Ready_'s Invoices module allows for SQL Injection attacks.

  • CVE-2025-1982HigApr 16, 2025
    risk 0.46cvss epss 0.01

    Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a local file using the file:// protocol thus allowing the attacker to read content of the file. This vulnerability can be use to read content of system files.

  • CVE-2019-18659MedNov 2, 2019
    risk 0.35cvss 5.3epss 0.01

    The Wireless Emergency Alerts (WEA) protocol allows remote attackers to spoof a Presidential Alert because cryptographic authentication is not used, as demonstrated by MessageIdentifier 4370 in LTE System Information Block 12 (aka SIB12). NOTE: testing inside an RF-isolated…