Filtered by vendor Spaceapplications Subscriptions
Filtered by product Yacms Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-46470 1 Spaceapplications 1 Yacms 2023-11-28 5.4 Medium
Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via crafted telecommand in the timeline view of the ArchiveBrowser.
CVE-2023-46471 1 Spaceapplications 1 Yacms 2023-11-28 5.4 Medium
Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via the text variable scriptContainer of the ScriptViewer.
CVE-2023-47311 1 Spaceapplications 1 Yacms 2023-11-28 6.1 Medium
An issue in Yamcs 5.8.6 allows attackers to send aribitrary telelcommands in a Command Stack via Clickjacking.