VYPR
Vendor

Ronds

Products
3
CVEs
2
Across products
6
Status
Private

Products

3

Recent CVEs

2
  • CVE-2022-2893HigJan 17, 2023
    risk 0.53cvss 8.2epss 0.01

    RONDS EPM version 1.19.5 does not properly validate the filename parameter, which could allow an unauthorized user to specify file paths and download files.  

  • CVE-2022-3091HigJan 17, 2023
    risk 0.49cvss 7.5epss 0.01

    RONDS EPM version 1.19.5 has a vulnerability in which a function could allow unauthenticated users to leak credentials. In some circumstances, an attacker can exploit this vulnerability to execute operating system (OS) commands.