Lucene search

K

Qconvergeconslole Gui Security Vulnerabilities

cve
cve

CVE-2020-5805

In Marvell QConvergeConsole GUI <= 5.5.0.74, credentials are stored in cleartext in tomcat-users.xml. OS-level users on the QCC host who are not authorized to use QCC may use the plaintext credentials to login to...

8.8CVSS

8.5AI Score

0.001EPSS

2021-01-08 04:15 PM
27
2
cve
cve

CVE-2020-5804

Marvell QConvergeConsole GUI <= 5.5.0.74 is affected by a path traversal vulnerability. The deleteEventLogFile method of the GWTTestServiceImpl class lacks proper validation of a user-supplied path prior to using it in file deletion operations. An authenticated, remote attacker can leverage this...

8.1CVSS

8AI Score

0.002EPSS

2021-01-08 04:15 PM
19