Vulnerabilities (CVE)

Filtered by vendor Spaceapplications Subscribe
Filtered by product Yacms
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-46471 1 Spaceapplications 1 Yacms 2023-12-10 N/A 5.4 MEDIUM
Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via the text variable scriptContainer of the ScriptViewer.
CVE-2023-46470 1 Spaceapplications 1 Yacms 2023-12-10 N/A 5.4 MEDIUM
Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via crafted telecommand in the timeline view of the ArchiveBrowser.
CVE-2023-47311 1 Spaceapplications 1 Yacms 2023-12-10 N/A 6.1 MEDIUM
An issue in Yamcs 5.8.6 allows attackers to send aribitrary telelcommands in a Command Stack via Clickjacking.