Filtered by vendor Ideagen Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-69752 1 Ideagen 1 Q-pulse 2026-02-13 N/A
An issue in the "My Details" user profile functionality of Ideagen Q-Pulse 7.1.0.32 allows an authenticated user to view other users' profile information by modifying the objectKey HTTP parameter in the My Details page URL.
CVE-2026-22587 1 Ideagen 1 Devonway 2026-01-13 5.5 Medium
Ideagen DevonWay contains a stored cross site scripting vulnerability. A remote, authenticated attacker could craft a payload in the 'Reports' page that executes when another user views the report. Fixed in 2.62.4 and 2.62 LTS.
CVE-2014-1238 1 Ideagen 1 Q-pulse 2024-11-21 6.1 Medium
Cross-site scripting (XSS) vulnerability in ui/common/managedlistdialog.aspx in Gael Q-Pulse 0.6 and earlier.