Vulnerabilities
Vulnerable Software
Cybelesoft:  >> Thinfinity Workspace  Security Vulnerabilities
Cybele Software Thinfinity Workspace before v7.0.2.113 was discovered to contain an access control issue in the Create Profile section. This vulnerability allows attackers to create arbitrary user profiles with elevated privileges.
CVSS Score
7.3
EPSS Score
0.001
Published
2024-11-13
Cybele Software Thinfinity Workspace before v7.0.2.113 was discovered to contain a hardcoded cryptographic key used for encryption.
CVSS Score
4.8
EPSS Score
0.0
Published
2024-11-13
Cybele Software Thinfinity Workspace before v7.0.2.113 was discovered to contain an access control issue in the API endpoint where Web Sockets connections are established.
CVSS Score
9.8
EPSS Score
0.002
Published
2024-11-13
Incorrect access control in Cybele Software Thinfinity Workspace before v7.0.3.109 allows attackers to gain access to a secondary broker via a crafted request.
CVSS Score
8.1
EPSS Score
0.002
Published
2024-11-13
A full path disclosure in Cybele Software Thinfinity Workspace before v7.0.2.113 allows attackers to obtain the root path of the application via unspecified vectors.
CVSS Score
7.5
EPSS Score
0.001
Published
2024-11-13


Contact Us

Shodan ® - All rights reserved