Filtered by vendor Servisnet Subscriptions
Filtered by product Tessa Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-22832 1 Servisnet 1 Tessa 2023-08-08 9.8 Critical
An issue was discovered in Servisnet Tessa 0.0.2. Authorization data is available via an unauthenticated /data-service/users/ request.
CVE-2022-22831 1 Servisnet 1 Tessa 2022-02-11 9.8 Critical
An issue was discovered in Servisnet Tessa 0.0.2. An attacker can add a new sysadmin user via a manipulation of the Authorization HTTP header.
CVE-2022-22833 1 Servisnet 1 Tessa 2022-02-10 7.5 High
An issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request.