Ing. Simon Schönegger, BSc, MSc
8 exploits
Active since Mar 2023
Stimulsoft Dashboard.JS < 2024.1.2 - Remote Code Execution via Search Bar Component
CVSS 6.1
stimulsoft dashboards.js < 2024.1.2 - Cross-Site Scripting via ReportName Field
CVSS 5.4
Stimulsoft Dashboard.JS < 2024.1.2 - Path Traversal via Save Function FileName Parameter
CVSS 9.8
Stimulsoft Designer 2023.1.4-2023.1.5 - Cleartext Storage of Sensitive Information in Connection String
CVSS 5.5
Stimulsoft Designer (Web) 2023.1.3 - Local File Inclusion
CVSS 7.5
Safe FME Server < 2022.2.5 - Authenticated Path Traversal and Arbitrary File Write via Network Resource Connection
CVSS 8.1
Stimulsoft Designer and Viewer - Remote Code Execution via Report Variable Injection
CVSS 9.8
Stimulsoft Designer 2023.1.3 - Server-Side Request Forgery via External Resource Embedding
CVSS 7.5