Vulnerabilities (CVE)

Filtered by CWE-531
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-42213 2025-05-05 N/A 5.3 MEDIUM
HCL BigFix Compliance is affected by inclusion of temporary files left in the production environment. An attacker might gain access to these files by indexing or retrieved via predictable URLs or misconfigured permissions, leading to information disclosure.
CVE-2025-43717 2025-04-17 N/A 5.4 MEDIUM
In PEAR HTTP_Request2 before 2.7.0, multiple files in the tests directory, notably tests/_network/getparameters.php and tests/_network/postparameters.php, reflect any GET or POST parameters, leading to XSS.