Vulnerabilities (CVE)

Filtered by vendor Keystorage Subscribe
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-26724 1 Keystorage 1 Global Facilities Management Software 2026-02-26 N/A 7.6 HIGH
Cross Site Scripting vulnerability in Key Systems Inc Global Facilities Management Software v. 20230721a allows a remote attacker to execute arbitrary code via the selectgroup and gn parameters on the /?Function=Groups endpoint.
CVE-2026-26721 1 Keystorage 1 Global Facilities Management Software 2026-02-26 N/A 7.1 HIGH
An issue in Key Systems Inc Global Facilities Management Software v.20230721a allows a remote attacker to obtain sensitive information via the sid query parameter.
CVE-2026-26722 1 Keystorage 1 Global Facilities Management Software 2026-02-26 N/A 9.4 CRITICAL
An issue in Key Systems Inc Global Facilities Management Software v.20230721a allows a remote attacker to escalate privileges via PIN component of the login functionality.
CVE-2026-26723 1 Keystorage 1 Global Facilities Management Software 2026-02-26 N/A 8.2 HIGH
Cross Site Scripting vulnerability in Key Systems Inc Global Facilities Management Software v. 20230721a allows a remote attacker to execute arbitrary code via the function parameter.
CVE-2022-45766 1 Keystorage 1 Global Facilities Management Software 2025-03-24 N/A 9.1 CRITICAL
Hardcoded credentials in Global Facilities Management Software (GFMS) Version 3 software distributed by Key Systems Management permits remote attackers to impact availability, confidentiality, accessibility and dependability of electronic key boxes.