Filtered by vendor Tribalsystems Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-45960 1 Tribalsystems 1 Zenario 2024-10-04 4.8 Medium
Zenario 9.7.61188 allows authenticated admin users to upload PDF files containing malicious code into the target system. If the PDF file is accessed through the website, it can trigger a Cross Site Scripting (XSS) attack.
CVE-2024-45964 1 Tribalsystems 1 Zenario 2024-10-04 4.8 Medium
Zenario 9.7.61188 is vulnerable to Cross Site Scripting (XSS) in the Image library via the "Organizer tags" field.