Loading product vulnerabilities…
Total
3
Critical
0
High
0
Medium
0
CISA KEV
0
RoomWizard before 4.4.x allows XSS via the HelpAction.action pageName parameter.
RoomWizard before 4.4.x allows remote attackers to obtain potentially sensitive information about IP addresses via /getGroupTimeLineJSON.action.
GroupViewProxyServlet in RoomWizard before 4.4.x allows SSRF via the url parameter.