Known vulnerabilities in Oxygen Content Fusion
Vendor:
SyncRO Soft
Software:
Oxygen Content Fusion
Software CPE:
cpe:2.3:a:syncro_soft:oxygen_content_fusion:*:*:*:*:*:*:*:*
Website:
https://www.sync.ro/
Total vulnerabilities:
3
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU78805 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2023-34478 |
CWE-22 | High | 6.0 2023110109 | 01.08.2023 |
SB2023080109 SB2023111053 SB2023111054 and 6 more |
||
| #VU68376 - Integer overflow CVE-2022-3515 |
CWE-190 | High | 6.0 2023110109 | 18.10.2022 |
SB2022101805 SB2022101807 SB2022101808 and 64 more |
||
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | 3.0.1 2021121414, 4.1.3 2021121315 | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |