Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Tobit Laboratories AG — Vulnerabilities & Security Advisories 22

Browse all 22 CVE security advisories affecting Tobit Laboratories AG. AI-powered Chinese analysis, POCs, and references for each vulnerability.

This page provides a comprehensive aggregation of security vulnerabilities associated with Tobit Laboratories AG, focusing on their primary product ecosystem. The repository collects a wide array of weakness types, including buffer overflows, improper input validation, and cross-site scripting flaws, which have been documented across various versions of their software solutions. This data spans a significant historical time range, capturing advisories and reports from the early adoption of their digital office platforms through to recent updates, ensuring a longitudinal view of the vendor's security posture. By reviewing this aggregated information, users can effectively track the progression of Tobit Laboratories AG's security advisories over time, gaining insight into how the company addresses emerging threats and patches critical gaps. Additionally, this resource allows analysts to deeply understand specific weakness classes within the context of the vendor’s technology stack, facilitating more targeted risk assessments. Users can also look up a product’s vulnerability history to identify recurring issues or patterns in bug fixes, which is essential for understanding the stability and maturity of the software. This structured approach to vulnerability data supports security professionals in making informed decisions regarding procurement, patch management, and overall risk mitigation strategies without relying on isolated incident reports. The goal is to provide a transparent, centralized view of the security landscape surrounding Tobit Laboratories AG’s offerings.

Found 22 results / 22 Clear Filters
Top products by Tobit Laboratories AG: TeamDavid
CVE ID Title CVSS Severity Published
CVE-2026-54205 TeamDavid: Server-Side Request Forgery (SSRF) via 'pathname' parameter in link storing functionality — TeamDavid CWE-20 6.3 Medium 2026-08-07
CVE-2026-54218 TeamDavid: Weak Cryptography and Insecure Password Storage — TeamDavid CWE-321 8.8 High 2026-08-07
CVE-2026-54217 TeamDavid: Stored XSS in web application — TeamDavid CWE-20 5.3 Medium 2026-08-07
CVE-2026-54216 TeamDavid: Reflected Cross Site Scripting (XSS) via the 'EntryInfo' parameter — TeamDavid CWE-79 5.3 Medium 2026-08-07
CVE-2026-54215 TeamDavid: Open Redirect via the 'replyUrl' parameter — TeamDavid CWE-601 5.3 Medium 2026-08-07
CVE-2026-54214 TeamDavid: Header Injection through the 'cType' URL parameter — TeamDavid CWE-601 5.3 Medium 2026-08-07
CVE-2026-54213 TeamDavid: Denial of Service via endpoint 'internalRestart' — TeamDavid CWE-284 9.2 Critical 2026-08-07
CVE-2026-54212 TeamDavid: Buffer Overflow in JSON-parsing — TeamDavid CWE-787 9.5 Critical 2026-08-07
CVE-2026-54211 TeamDavid: Buffer Overflow in multiple form data parameters — TeamDavid CWE-787 9.5 Critical 2026-08-07
CVE-2026-54210 TeamDavid: Buffer Overflow in file names of file upload functionalities — TeamDavid CWE-787 9.5 Critical 2026-08-07
CVE-2026-54209 TeamDavid: Buffer Overflow in 'editini' function — TeamDavid CWE-125 8.9 High 2026-08-07
CVE-2026-54208 TeamDavid: Arbitrary File Write leading to Stored XSS — TeamDavid CWE-20 8.5 High 2026-08-07
CVE-2026-54207 TeamDavid: Server-Side Request Forgery (SSRF) via 'pathname' parameter in move archive functionality — TeamDavid CWE-20 6.3 Medium 2026-08-07
CVE-2026-54206 TeamDavid: Server-Side Request Forgery (SSRF) via 'pathname' parameter in sending functionality — TeamDavid CWE-20 6.3 Medium 2026-08-07
CVE-2026-54204 TeamDavid: Server-Side Request Forgery (SSRF) via 'pathnameroot' parameter in search functionality — TeamDavid CWE-20 7.7 High 2026-08-07
CVE-2026-54203 TeamDavid: Memory Leak leaking sensitive information — TeamDavid CWE-200 9.2 Critical 2026-08-07
CVE-2026-54202 TeamDavid: Path Traversal in the archive creation functionality — TeamDavid CWE-36 8.5 High 2026-08-07
CVE-2026-54201 TeamDavid: Missing Authorization — TeamDavid CWE-862 6.9 Medium 2026-08-07
CVE-2026-54200 TeamDavid: Local File Inclusion via the form field 'scjob' — TeamDavid CWE-73 8.4 High 2026-08-07
CVE-2026-54199 TeamDavid: Header Injection through request body in link storing functionality — TeamDavid CWE-20 5.3 Medium 2026-08-07
CVE-2026-12071 TeamDavid: Header Injection leading to Open Redirect via URL-encoded characters — TeamDavid CWE-601 5.3 Medium 2026-08-07
CVE-2026-12070 TeamDavid: Arbitrary File Deletion via form field 'scjob' — TeamDavid CWE-73 8.4 High 2026-08-07

This page lists every published CVE security advisory associated with Tobit Laboratories AG. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.