📦 Embrace

by Italtel

🔍 What is Embrace?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-31842

HIGH CVSS 8.8 Aug 20, 2024

This vulnerability in Italtel Embrace 1.6.4 exposes user access tokens in URL query strings via GET requests, allowing attackers to steal session credentials. Attackers can use stolen tokens to impers...

CVE-2024-31841

HIGH CVSS 7.5 Apr 19, 2024

CVE-2024-31841 is an input validation vulnerability in Italtel Embrace 1.6.4 web server that allows remote unauthenticated attackers to read arbitrary files on the filesystem. This affects all systems...

CVE-2024-31844

MEDIUM CVSS 5.3 May 21, 2024

This vulnerability in Italtel Embrace 1.6.4 allows unauthenticated attackers to trigger application errors that reveal sensitive server information like absolute file paths. This information disclosur...

CVE-2024-31847

MEDIUM CVSS 6.1 May 21, 2024

A stored cross-site scripting (XSS) vulnerability in Italtel Embrace 1.6.4 allows attackers to inject malicious scripts into GET parameters. Both authenticated and unauthenticated remote attackers can...