Vulnerabilities
Vulnerable Software
Softwareag:  Security Vulnerabilities
MashZone NextGen through 10.7 GA has an SSRF vulnerability that allows an attacker to interact with arbitrary TCP services, by abusing the feature to check the availability of a PPM connection. This occurs in com.idsscheer.ppmmashup.web.webservice.impl.ZPrestoAdminWebService.
CVSS Score
7.2
EPSS Score
0.013
Published
2022-03-30
The Software AG Terracotta Server OSS Docker image 5.4.1 contains a blank password for the root user. Systems deployed using affected versions of the Terracotta Server OSS container may allow a remote attacker to achieve root access with a blank password.
CVSS Score
9.8
EPSS Score
0.021
Published
2020-12-16
initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description.
CVSS Score
9.8
EPSS Score
0.162
Published
2019-07-26


Contact Us

Shodan ® - All rights reserved