VendorsCarson-Saintsaint_security_suiteall versions
Vulnerabilities

Carson-Saint SAINT Security Suite

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2020-16276
An SQL injection vulnerability in the Assets component of SAINT Security Suite 8.0 through 9.8.20 allows a remote, authenticated attacker to gain unauthorized access to the database.
Published 2020-08-10 · Modified
8.8EPSS 0.012
CVE-2020-16277
An SQL injection vulnerability in the Analytics component of SAINT Security Suite 8.0 through 9.8.20 allows a remote, authenticated attacker to gain unauthorized access to the database.
Published 2020-08-10 · Modified
8.8EPSS 0.012
CVE-2020-16275
A cross-site scripting (XSS) vulnerability in the Credential Manager component in SAINT Security Suite 8.0 through 9.8.20 could allow arbitrary script to run in the context of a logged-in user when the user clicks on a specially crafted link.
Published 2020-08-10 · Modified
6.1EPSS 0.006
CVE-2020-16278
A cross-site scripting (XSS) vulnerability in the Permissions component in SAINT Security Suite 8.0 through 9.8.20 could allow arbitrary script to run in the context of a logged-in user when the user clicks on a specially crafted link.
Published 2020-08-10 · Modified
6.1EPSS 0.006