📦 Supravizio Bpm

by Venki

🔍 What is Supravizio Bpm?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-46479

CRITICAL CVSS 9.9 Jan 13, 2025

Venki Supravizio BPM through version 18.0.1 contains an arbitrary file upload vulnerability that allows authenticated attackers to upload malicious files. This can lead to remote code execution on aff...

CVE-2024-46480

HIGH CVSS 8.4 Jan 13, 2025

This vulnerability allows authenticated attackers with Application Administrator access in Venki Supravizio BPM to leak NTLM hashes, enabling privilege escalation on the underlying host system. It aff...

CVE-2024-46481

HIGH CVSS 7.2 Jan 13, 2025

The login page of Venki Supravizio BPM up to version 18.1.1 contains an open redirect vulnerability that can be exploited to perform reflected cross-site scripting (XSS) attacks. This allows attackers...