Known vulnerabilities in Qlik Sense Enterprise for Windows November 2022 Patch 10

Version: November 2022 Patch 10
Software CPE: cpe:2.3:a:qlik:qlik_sense_enterprise_for_windows:*:*:*:*:*:*:*:*
Total vulnerabilities: 2
Public exploits: 2
Known exploited (KEV): 2
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Qlik Sense Enterprise for Windows version November 2022 Patch 10 Qlik Sense Enterprise for Windows November 2022 Patch 10 is affected by 2 vulnerabilities: 2 high Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU80196 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-41266
CWE-22 High
Public exploit available
Exploited
August 2022 Patch 13, August 2023, May 2023 Patch 4, February 2023 Patch 8, November 2022 Patch 11 31.08.2023 SB2023083126
#VU80193 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-41265
CWE-444 High
Public exploit available
Exploited
August 2022 Patch 13, August 2023, May 2023 Patch 4, February 2023 Patch 8, November 2022 Patch 11 31.08.2023 SB2023083126