VendorsVerintworkforce_optimizationall versions
Vulnerabilities

Verint Workforce Optimization

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2024-36396
Verint - CWE-434: Unrestricted Upload of File with Dangerous Type
Published 2024-06-13 · Modified
8.8EPSS 0.004
CVE-2021-36450
Verint Workforce Optimization (WFO) 15.2.8.10048 allows XSS via the control/my_notifications NEWUINAV parameter.
Published 2021-12-15 · Modified
6.1EPSS 0.643
CVE-2024-36395
Verint - CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
Published 2024-06-13 · Modified
6.1EPSS 0.003
CVE-2020-13480
Verint Workforce Optimization (WFO) 15.2 allows HTML injection via the "send email" feature.
Published 2020-06-22 · Modified
5.4EPSS 0.010
CVE-2020-23446
Verint Workforce Optimization suite 15.1 (15.1.0.37634) has Unauthenticated Information Disclosure via API
Published 2020-09-22 · Modified
5.3EPSS 0.012
CVE-2021-41825
Verint Workforce Optimization (WFO) 15.2.5.1033 allows HTML injection via the /wfo/control/signin username parameter.
Published 2021-10-08 · Modified
5.3EPSS 0.011