Vulnerabilities
Vulnerable Software
Steelcase:  >> Roomwizard  Security Vulnerabilities
GroupViewProxyServlet in RoomWizard before 4.4.x allows SSRF via the url parameter.
CVSS Score
7.5
EPSS Score
0.011
Published
2018-02-15
RoomWizard before 4.4.x allows remote attackers to obtain potentially sensitive information about IP addresses via /getGroupTimeLineJSON.action.
CVSS Score
5.3
EPSS Score
0.011
Published
2018-02-15
RoomWizard before 4.4.x allows XSS via the HelpAction.action pageName parameter.
CVSS Score
6.1
EPSS Score
0.007
Published
2018-02-15


Contact Us

Shodan ® - All rights reserved