Skip to main content

Vendor/product archive

newforma / project_center CVEs

Beta · best-effort

14 CVEs tagged to newforma / project_center2 Critical, 3 High, 9 Medium, 0 Low, 0 Unrated.

CVE-2025-35062

Published Oct 9, 2025

Newforma Info Exchange (NIX) before version 2023.1 by default allows anonymous authentication which allows an unauthenticated attacker to exploit additional vulnerabilities that r…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35061

Published Oct 9, 2025

Newforma Info Exchange (NIX) '/NPCSRemoteWeb/LegacyIntegrationServices.asmx' allows a remote, unauthenticated attacker to cause NIX to make an SMB connection to an attacker-contro…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2025-35060

Published Oct 9, 2025

Newforma Info Exchange (NIX) provides a 'Send a File Transfer' feature that allows a remote, authenticated attacker to upload SVG files that contain JavaScript or other content th…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35059

Published Oct 9, 2025

Newforma Info Exchange (NIX) '/DownloadWeb/hyperlinkredirect.aspx' provides an unauthenticated URL redirect via the 'nhl' parameter.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35058

Published Oct 9, 2025

Newforma Info Exchange (NIX) '/UserWeb/Common/MarkupServices.ashx' allows a remote, unauthenticated attacker to cause NIX to make an SMB connection to an attacker-controlled syste…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2025-35057

Published Oct 9, 2025

Newforma Info Exchange (NIX) '/RemoteWeb/IntegrationServices.ashx' allows a remote, unauthenticated attacker to cause NIX to make an SMB connection to an attacker-controlled syste…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35056

Published Oct 9, 2025

Newforma Info Exchange (NIX) '/UserWeb/Common/MarkupServices.ashx' 'StreamStampImage' accepts an encrypted file path and returns an image of the specified file. An authenticated a…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35055

Published Oct 9, 2025

Newforma Info Exchange (NIX) '/UserWeb/Common/UploadBlueimp.ashx' allows an authenticated attacker to upload an arbitrary file to any location writable by the NIX application. An…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2025-35054

Published Oct 9, 2025

Newforma Info Exchange (NIX) stores credentials used to configure NPCS in 'HKLM\Software\WOW6432Node\Newforma\<version>\Credentials'. The credentials are encrypted but the encryp…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35053

Published Oct 9, 2025

Newforma Info Exchange (NIX) accepts requests to '/UserWeb/Common/MarkupServices.ashx' specifying the 'DownloadExportedPDF' command that allow an authenticated user to read and de…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35052

Published Oct 9, 2025

Newforma Info Exchange (NIX) uses a hard-coded key to encrypt certain query parameters. Some encrypted parameter values can specify paths to download files, potentially bypassing…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-35051

Published Oct 9, 2025

Newforma Project Center Server (NPCS) accepts serialized .NET data via the '/ProjectCenter.rem' endpoint on 9003/tcp, allowing a remote, unauthenticated attacker to execute arbitr…

CVSS 9.2 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-35050

Published Oct 9, 2025

Newforma Info Exchange (NIX) accepts serialized .NET data via the '/remoteweb/remote.rem' endpoint, allowing a remote, unauthenticated attacker to execute arbitrary code with 'NT…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-32499

Published Apr 28, 2025

Newforma Project Center Server through 2023.3.0.32259 allows remote code execution because .NET Remoting is exposed.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-14 of 14 CVEsPage 1 of 1