CVE-2021-20069
- EPSS 0.21%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scripting attacks via the regionalSettings.php dialogs.
CVE-2021-20070
- EPSS 0.21%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scriptings attacks via the virtualization.php dialogs.
CVE-2021-20071
- EPSS 0.21%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scriptings attacks via the sms.php dialogs.
CVE-2021-20072
- EPSS 1.89%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to arbitrarily access and delete files via an authenticated directory traveral.
CVE-2021-20073
- EPSS 0.14%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows for cross-site request forgeries.
- EPSS 0.56%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows users to escape the provided command line interface and execute arbitrary OS commands.
CVE-2021-20075
- EPSS 0.04%
- Veröffentlicht 16.02.2021 20:15:16
- Zuletzt bearbeitet 21.11.2024 05:45:52
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows for privilege escalation via configd.
CVE-2021-20067
- EPSS 0.19%
- Veröffentlicht 16.02.2021 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:45:51
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to view sensitive syslog events without authentication.
CVE-2021-20068
- EPSS 0.21%
- Veröffentlicht 16.02.2021 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:45:51
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scripting attacks via the error handling functionality of web pages.