Known vulnerabilities in Mendix Applications using Mendix 8
Vendor:
Siemens
Software:
Mendix Applications using Mendix 8
Software CPE:
cpe:2.3:a:siemens:mendix_applications_using_mendix_8:*:*:*:*:*:*:*:*
Website:
https://www.siemens.com/
Total vulnerabilities:
9
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.4
Breakdown by Severity Chart
Vulnerabilities (9)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU83214 - Authentication Bypass by Capture-replay CVE-2023-45794 |
CWE-294 | Medium | 8.18.27 | 16.11.2023 |
SB2023111606 |
||
| #VU72460 - Improper Access Control CVE-2023-23835 |
CWE-284 | Medium | 8.18.23 | 21.02.2023 |
SB2023022138 |
||
| #VU65265 - Improper Access Control CVE-2022-31257 |
CWE-284 | Low | 8.18.18 | 13.07.2022 |
SB2022071325 |
||
| #VU62383 - Exposure of sensitive information to an unauthorized actor CVE-2022-27241 |
CWE-200 | Medium | - | 19.04.2022 |
SB2022041909 |
||
| #VU62382 - Improper Access Control CVE-2022-25650 |
CWE-284 | Low | 8.18.14 | 19.04.2022 |
SB2022041908 |
||
| #VU61236 - Improper Access Control CVE-2022-24309 |
CWE-284 | Medium | 8.18.16 | 10.03.2022 |
SB2022031009 |
||
| #VU58242 - Improper Authorization CVE-2021-42026 |
CWE-285 | Low | 8.18.13 | 18.11.2021 |
SB2021111818 |
||
| #VU58241 - Improper Authorization CVE-2021-42025 |
CWE-285 | Medium | 8.18.13 | 18.11.2021 |
SB2021111818 |
||
| #VU58197 - Use of Web Browser Cache Containing Sensitive Information CVE-2021-42015 |
CWE-525 | Medium | 8.18.12 | 16.11.2021 |
SB2021111621 |