Known vulnerabilities in Enterprise Data Management Web 2017

Version: 2017
Software CPE: cpe:2.3:a:aveva_software:enterprise_data_management_web:*:*:*:*:*:*:*:*
Total vulnerabilities: 12
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Enterprise Data Management Web version 2017 Enterprise Data Management Web 2017 is affected by 12 vulnerabilities: 9 high, 3 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU47207 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13521
CWE-89 High
No
No
2018 SP2, 2019 SP1 30.09.2020 SB2020091114
#VU47206 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13506
CWE-89 High
No
No
2018 SP2, 2019 SP1 30.09.2020 SB2020091114
#VU47205 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13505
CWE-89 High
No
No
2018 SP2, 2019 SP1 30.09.2020 SB2020091114
#VU47204 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13504
CWE-89 High
No
No
2018 SP2, 2019 SP1 30.09.2020 SB2020091114
#VU47199 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13502
CWE-89 High
No
No
2018 SP2, 2019 SP1 24.09.2020 SB2020091114
#VU47200 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-6153
CWE-89 High
No
No
2018 SP2, 2019 SP1 24.09.2020 SB2020091114
#VU47201 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13507
CWE-89 High
No
No
2018 SP2, 2019 SP1 24.09.2020 SB2020091114
#VU47202 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13508
CWE-89 High
No
No
2018 SP2, 2019 SP1 24.09.2020 SB2020091114
#VU47203 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13503
CWE-89 High
No
No
2018 SP2, 2019 SP1 24.09.2020 SB2020091114
#VU46656 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13501
CWE-89 Low
No
No
2018 SP2, 2019 SP1 11.09.2020 SB2020091114
#VU46655 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13500
CWE-89 Low
No
No
2018 SP2, 2019 SP1 11.09.2020 SB2020091114
#VU46654 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-13499
CWE-89 Low
No
No
2018 SP2, 2019 SP1 11.09.2020 SB2020091114