Secomea

Gatemanager 8250 Firmware

20 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:53:00

Information Exposure Through Query Strings in GET Request vulnerability in LMM API of Secomea GateManager allows system administrator to hijack connection. This issue affects: Secomea GateManager all versions prior to 9.7.

  • EPSS 0.23%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:59

Insufficient Logging vulnerability in web server of Secomea GateManager allows logged in user to issue improper queries without logging. This issue affects: Secomea GateManager versions prior to 9.7.

  • EPSS 0.21%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:59

Improper Handling of Insufficient Privileges vulnerability in Web UI of Secomea GateManager allows logged in user to access and update privileged information. This issue affects: Secomea GateManager versions prior to 9.7.

  • EPSS 0.62%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:59

Cross-site Scripting (XSS) vulnerability in Web UI of Secomea GateManager allows phishing attacker to inject javascript or html into logged in user session.

  • EPSS 0.35%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:59

Information Exposure vulnerability in web UI of Secomea GateManager allows logged in user to query devices outside own scope.

  • EPSS 0.34%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:58

Logging of Excessive Data vulnerability in audit log of Secomea GateManager allows logged in user to write text entries in audit log. This issue affects: Secomea GateManager versions prior to 9.7.

  • EPSS 0.17%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:58

Cross-Site Request Forgery (CSRF) vulnerability in Web UI of Secomea GateManager allows phishing attacker to issue get request in logged in user session.

  • EPSS 0.1%
  • Veröffentlicht 04.05.2022 14:15:07
  • Zuletzt bearbeitet 21.11.2024 06:06:42

Inadequate Encryption Strength vulnerability in TLS stack of Secomea SiteManager, LinkManager, GateManager may facilitate man in the middle attacks. This issue affects: Secomea SiteManager All versions prior to 9.7. Secomea LinkManager versions prior...

  • EPSS 0.2%
  • Veröffentlicht 22.11.2021 21:15:07
  • Zuletzt bearbeitet 21.11.2024 06:06:41

This issue affects: Secomea GateManager All versions prior to 9.6. Improper Check of host header in web server of Secomea GateManager allows attacker to cause browser cache poisoning.

  • EPSS 0.21%
  • Veröffentlicht 05.03.2021 17:15:13
  • Zuletzt bearbeitet 21.11.2024 05:23:34

Upload of Code Without Integrity Check vulnerability in firmware archive of Secomea GateManager allows authenticated attacker to execute malicious code on server. This issue affects: Secomea GateManager all versions prior to 9.4.621054022