Known vulnerabilities in ICONICS Suite

Software: ICONICS Suite
Software CPE: cpe:2.3:a:iconics:iconics_suite:*:*:*:*:*:*:*:*
Total vulnerabilities: 8
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting ICONICS Suite ICONICS Suite is affected by 8 known vulnerabilities: 2 high, 1 medium, 5 low Critical High Medium Low

Vulnerabilities (8)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93709 - Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')
CVE-2024-1574
CWE-470 Low
No
No
10.97.3 03.07.2024 SB2024070319
#VU93706 - Improper Restriction of Excessive Authentication Attempts
CVE-2022-2650
CWE-307 High
No
No
10.97.2 03.07.2024 SB2024070305
SB2024070313
#VU80565 - Improper input validation
CVE-2023-4807
CWE-20 Low
No
No
10.97.2 08.09.2023 SB2023090834
SB2023092109
SB2023110126
and 45 more
#VU70321 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-40264
CWE-22 Medium
No
No
10.97.2 CFR1 14.12.2022 SB2022121422
#VU59904 - Out-of-bounds read
CVE-2022-23130
CWE-125 Low
No
No
- 21.01.2022 SB2022012107
SB2022012108
#VU59903 - Unprotected Storage of Credentials
CVE-2022-23129
CWE-256 Low
No
No
- 21.01.2022 SB2022012107
SB2022012109
#VU59902 - Incomplete List of Disallowed Inputs
CVE-2022-23128
CWE-184 High
No
No
- 21.01.2022 SB2022012107
SB2022012108
#VU59901 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23127
CWE-79 Low
No
No
- 21.01.2022 SB2022012107
SB2022012109