VendorsEFS Technologyautoform_pdm_archive6.920
Vulnerabilities

EFS Technology AutoFORM PDM Archive 6.920

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2012-1827
The web service in AutoFORM PDM Archive before 7.1 does not have authorization requirements, which allows remote authenticated users to perform database operations via a SOAP request, as demonstrated by the initializeQueryDatabase2 request.
Published 2012-06-13 · Modified
6.5EPSS 0.016
CVE-2012-1828
The administrative functions in AutoFORM PDM Archive before 7.1 do not have authorization requirements, which allows remote authenticated users to perform administrative actions by leveraging knowledge of a hidden function, as demonstrated by the password-change function.
Published 2012-06-13 · Modified
6.5EPSS 0.016