VendorsGAT-Shipweb_moduleall versions
Vulnerabilities

GAT-Ship Web Module

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2019-11028
GAT-Ship Web Module before 1.40 suffers from a vulnerability allowing authenticated attackers to upload any file type to the server via the "Documents" area. This vulnerability is related to "uploadDocFile.aspx".
Published 2019-04-09 · Modified
8.8EPSS 0.027
CVE-2019-12163
GAT-Ship Web Module through 1.30 allows remote attackers to obtain potentially sensitive information via {} in a ws/gatshipWs.asmx/SqlVersion request.
Published 2019-05-17 · Modified
5.3EPSS 0.028