VendorsFlexensevx_searchall versions
Vulnerabilities

Flexense VX Search

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2017-15220
Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to execute arbitrary code.
Published 2017-10-11 · Modified
9.81 PoCEPSS 0.071
CVE-2017-15662
In Flexense VX Search Enterprise v10.1.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9123.
Published 2018-01-10 · Modified
7.51 PoCEPSS 0.091
CVE-2023-49572
XSS vulnerability in VX Search Enterprise
Published 2024-05-24 · Modified
7.1EPSS 0.003
CVE-2023-49573
XSS vulnerability in VX Search Enterprise
Published 2024-05-24 · Analyzed
7.1EPSS 0.003
CVE-2023-49574
XSS vulnerability in VX Search Enterprise
Published 2024-05-24 · Analyzed
7.1EPSS 0.003
CVE-2023-49575
XSS vulnerability in VX Search Enterprise
Published 2024-05-24 · Modified
7.1EPSS 0.003
CVE-2018-10567
XSS exists in Flexense VX Search Enterprise from v10.1.12 to v10.7.
Published 2018-05-02 · Modified
6.1EPSS 0.007