VYPR
Vendor

STER

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2026-25606HigMay 22, 2026
    risk 0.57cvss epss 0.00

    A SQL injection vulnerability has been identified in STER. Improper neutralization of input provided by user into multiple Search Filters allows for SQL Injection attacks. It allows an authenticated attacker to view sensitive data such as data belonging to other users, or any…

  • CVE-2026-25607MedMay 22, 2026
    risk 0.37cvss epss 0.00

    Use of a weak password encoding algorithm in STER software allows the value of the password to be guessed after analyzing how passwords with known values are encoded. This issue was fixed in version 9.5.

  • CVE-2026-25608LowMay 22, 2026
    risk 0.15cvss epss 0.00

    STER uses unencrypted TCP traffic to transmit data over the network. It allows an attacker to conduct a Man-In-The-Middle attack and obtain sensitive data such as passwords, personal data, or authentication tokens. This issue was fixed in version 9.5.