Vulnerabilities (CVE)

Filtered by vendor Fico Subscribe
Filtered by product Origination Manager Decision
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-30056 1 Fico 1 Origination Manager Decision 2023-12-10 N/A 7.5 HIGH
A session takeover vulnerability exists in FICO Origination Manager Decision Module 4.8.1 due to insufficient protection of the JSESSIONID cookie.
CVE-2023-30057 1 Fico 1 Origination Manager Decision 2023-12-10 N/A 5.4 MEDIUM
Multiple stored cross-site scripting (XSS) vulnerabilities in FICO Origination Manager Decision Module 4.8.1 allow attackers to execute arbitrary web scripts or HTML via a crafted payload.