Posted by Yuffie Kisaragi via Fulldisclosure on Jan 05
UPDATE:
Following the publication of these vulnerabilities and the subsequent CVE
assignments, the CVE identifiers have now been revoked.
The vendor (EQS Group) contacted the CVE Program (via a CNA) and disputed the
records, stating that the affected product is an exclusively hosted SaaS
platform with no customer-managed deployment or versioning. Based on this
argument, the CVE Program concluded that CVE assignment is “not a suitable…
– Read More – Full Disclosure



