Mycomplianceoffice
8 known vulnerabilities
Top Products
MCO does not correctly validate types of uploaded files. File upload validation functionality relies only on client-side
MCO is vulnerable to User Enumeration through authentication-related functionalities. The application returns distinguis
MCO is vulnerable to Stored Cross‑Site Scripting (XSS) via the application logo upload functionality. An attacker with t
MCO is vulnerable to Path Disclosure and Path Traversal in file handling functionality related to data export and upload
MCO does not properly enforce authorization checks in the /customer/servlet/mco/webapi/admin-view-hierarchy/get-acl-tree
MCO is vulnerable to Account Denial of Service due to improper implementation of password reset functionality. Each pass
MCO is vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability in the /customer/servlet/mco/webapi/tradin
MCO does not properly enforce authorization checks in the /customer/servlet/mco/webapi/profile-sections/group-membership
Frequently Asked Questions
How many CVEs affect Mycomplianceoffice?
Mycomplianceoffice has 8 CVE records in our database, including 0 critical and 4 high severity vulnerabilities.
What are the most severe Mycomplianceoffice vulnerabilities?
Mycomplianceoffice has 0 critical severity (CVSS 9.0+) and 4 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Mycomplianceoffice vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Mycomplianceoffice products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Mycomplianceoffice Vulnerabilities
CyberStrike scans your infrastructure for Mycomplianceoffice vulnerabilities and provides real-time remediation guidance.
Get Started