9.8

CVE-2023-37220

Synel Terminals - CWE-494: Download of Code Without Integrity Check

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SynelSynergy/a Firmware Version < 3015.1
   SynelSynergy/a Version-
SynelSynergy Touch Firmware Version < 3015.1
   SynelSynergy Touch Version-
SynelSynergy 10 Firmware Version < 3015.1
   SynelSynergy 10 Version-
SynelSynergy 5 Firmware Version < 3015.1
   SynelSynergy 5 Version-
SynelSy-910 Firmware Version < 3015.1
   SynelSy-910 Version-
SynelSynergy/x Firmware Version < 3015.1
   SynelSynergy/x Version-
SynelSy110 Face Firmware Version < 3015.1
   SynelSy110 Face Version-
SynelBioentry-w2 Firmware Version < 3015.1
   SynelBioentry-w2 Version-
SynelBiolite-n2 Firmware Version < 3015.1
   SynelBiolite-n2 Version-
SynelBioentry P2 Firmware Version < 3015.1
   SynelBioentry P2 Version-
SynelSy-711 Firmware Version < 3015.1
   SynelSy-711 Version-
SynelSy-715 Firmware Version < 3015.1
   SynelSy-715 Version-
SynelSy-751 Firmware Version < 3015.1
   SynelSy-751 Version-
SynelSy-755 Firmware Version < 3015.1
   SynelSy-755 Version-
SynelSy-777 Firmware Version < 3015.1
   SynelSy-777 Version-
SynelSy-785 Firmware Version < 3015.1
   SynelSy-785 Version-
SynelSy-765 Firmware Version < 3015.1
   SynelSy-765 Version-
SynelSy-7500 Firmware Version < 3015.1
   SynelSy-7500 Version-
SynelSy-745 Firmware Version < 3015.1
   SynelSy-745 Version-
SynelSy-780 Firmware Version < 3015.1
   SynelSy-780 Version-
SynelSynergy Firmware Version < 3015.1
   SynelSynergy Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.146
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cna@cyber.gov.il 7.2 1.2 5.9
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-494 Download of Code Without Integrity Check

The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.