Vulnerabilidades en National Tax Agency
6 resultadosAnálisis Vexday
A National Tax Agency apresenta um perfil de risco moderado com 6 vulnerabilidades catalogadas, nenhuma delas crítica ou sob exploração ativa. A fraqueza dominante está relacionada a CWE-268 (Improper Privilege Management), indicando problemas de controle de acesso que demandam atenção em práticas de autenticação e autorização. O portfólio de vulnerabilidades é estável, sem descobertas recentes nos últimos 90 dias.
CVE-2016-4901—Untrusted search path vulnerability in The installer of e-Tax Software all versions allows remote attackers to gain privileges via a Trojan EPSS 1.8%CVE-2020-5601—Chrome Extension for e-Tax Reception System Ver1.0.0.0 allows remote attackers to execute an arbitrary command via unspecified vectors.EPSS 1.6%CVE-2017-2215—Untrusted search path vulnerability in Installer of "Setup file of advance preparation" (jizen_setup.exe) (The version which was available oEPSS 1.4%CVE-2017-2226—Untrusted search path vulnerability in Setup file of advance preparation for e-Tax software (WEB version) (1.17.1) and earlier allows an attEPSS 1.1%CVE-2023-46802MEDIUMe-Tax software Version3.0.10 and earlier improperly restricts XML external entity references (XXE) due to the configuration of the embedded EPSS 0.2%CVE-2024-47045HIGHPrivilege chaining issue exists in the installer of e-Tax software(common program). If this vulnerability is exploited, a malicious DLL prepEPSS 0.1%