Pesach Zirkind

2 exploits Active since Jun 2017
CVE-2017-7312 EXPLOITDB CRITICAL text WRITEUP
Personify360 e-Business <7.6.1 - Info Disclosure
An issue was discovered in Personify360 e-Business 7.5.2 through 7.6.1. When going to the /TabId/275 URI, anyone can add a vendor account or read existing vendor account data (including usernames and passwords).
CVSS 9.8
CVE-2017-7314 EXPLOITDB HIGH text WRITEUP
Personify360 e-Business <7.6.1 - Info Disclosure
An issue was discovered in Personify360 e-Business 7.5.2 through 7.6.1. When going to the /TabId/275 URI, while creating a new role, a list of database tables and their columns is available.
CVSS 7.5