CVE-2026-44402
- EPSS 0.89%
- Veröffentlicht 04.09.2026 15:31:12
- Zuletzt bearbeitet 10.09.2026 15:53:23
Voltronic Power SNMP Web Pro 1.1 contains an unauthenticated remote code execution vulnerability in the upload.cgi firmware update endpoint that allows remote attackers to execute arbitrary commands as root by uploading a crafted tar archive without ...
CVE-2023-49563
- EPSS 0.55%
- Veröffentlicht 12.12.2023 09:15:08
- Zuletzt bearbeitet 21.11.2024 08:33:33
Cross Site Scripting (XSS) in Voltronic Power SNMP Web Pro v.1.1 allows an attacker to execute arbitrary code via a crafted script within a request to the webserver.
CVE-2023-39073
- EPSS 0.94%
- Veröffentlicht 12.09.2023 22:15:08
- Zuletzt bearbeitet 21.11.2024 08:14:43
An issue in SNMP Web Pro v.1.1 allows a remote attacker to execute arbitrary code and obtain senstive information via a crafted request.
CVE-2023-33274
- EPSS 1.06%
- Veröffentlicht 12.07.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:05:18
The authentication mechanism in PowerShield SNMP Web Pro 1.1 contains a vulnerability that allows unauthenticated users to directly access Common Gateway Interface (CGI) scripts without proper identification or authorization. This vulnerability arise...