Vendor
Skit Cyber Security
Products
2
CVEs
6
Across products
6
Status
Private
Products
2- 5 CVEs
- 1 CVE
Recent CVEs
6| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-46649 | Hig | 0.49 | 7.5 | 0.01 | Sep 20, 2024 | eNMS up to 4.7.1 is vulnerable to Directory Traversal via download/folder. | ||
| CVE-2024-46648 | Hig | 0.49 | 7.5 | 0.01 | Sep 20, 2024 | eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via scan_folder. | ||
| CVE-2024-46645 | Hig | 0.49 | 7.5 | 0.01 | Sep 20, 2024 | eNMS 4.0.0 is vulnerable to Directory Traversal via get_tree_files. | ||
| CVE-2024-46647 | Med | 0.42 | 6.5 | 0.01 | Sep 20, 2024 | eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via upload_files. | ||
| CVE-2024-46644 | Med | 0.42 | 6.5 | 0.01 | Sep 20, 2024 | eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via edit_file. | ||
| CVE-2026-30252 | Med | 0.40 | 6.1 | 0.00 | Apr 2, 2026 | Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and… |
- risk 0.49cvss 7.5epss 0.01
eNMS up to 4.7.1 is vulnerable to Directory Traversal via download/folder.
- risk 0.49cvss 7.5epss 0.01
eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via scan_folder.
- risk 0.49cvss 7.5epss 0.01
eNMS 4.0.0 is vulnerable to Directory Traversal via get_tree_files.
- risk 0.42cvss 6.5epss 0.01
eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via upload_files.
- risk 0.42cvss 6.5epss 0.01
eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via edit_file.
- risk 0.40cvss 6.1epss 0.00
Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and…