Filtered by vendor Esafenet Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-9632 1 Esafenet 1 Electronic Document Security Management System 2022-10-03 N/A
ESAFENET CDG V3 and V5 has an arbitrary file download vulnerability via the fileName parameter in download.jsp because the InstallationPack parameter is mishandled in a /CDGServer3/ClientAjax request.
CVE-2017-18636 1 Esafenet 1 Cdg 2019-10-02 7.5 High
CDG through 2017-01-01 allows downloadDocument.jsp?command=download&pathAndName= directory traversal.