VendorsEsafenetcdgany version
Vulnerabilities

Esafenet CDG any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2024-42885
SQL Injection vulnerability in ESAFENET CDG 5.6 and before allows an attacker to execute arbitrary code via the id parameter of the data.jsp page.
Published 2024-09-05 · Analyzed
9.1EPSS 0.006
CVE-2017-18636
CDG through 2017-01-01 allows downloadDocument.jsp?command=download&pathAndName= directory traversal.
Published 2019-09-30 · Modified
7.5EPSS 0.021