CVE-2021-41541
- EPSS 0.53%
- Veröffentlicht 08.03.2022 12:15:10
- Zuletzt bearbeitet 21.11.2024 06:26:22
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module) (All versions < V11.36). The Group Management page of affected devices is vulnerable to cross-site scripting (XSS). The vulnerab...
CVE-2021-41542
- EPSS 0.53%
- Veröffentlicht 08.03.2022 12:15:10
- Zuletzt bearbeitet 21.11.2024 06:26:22
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module) (All versions < V11.36). The User Management page of affected devices is vulnerable to cross-site scripting (XSS). The vulnerabi...
CVE-2021-41543
- EPSS 0.22%
- Veröffentlicht 08.03.2022 12:15:10
- Zuletzt bearbeitet 21.11.2024 06:26:23
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module) (All versions < V11.36). The handling of log files in the web application of affected devices contains an information disclosure...
CVE-2021-40366
- EPSS 0.07%
- Veröffentlicht 09.11.2021 12:15:10
- Zuletzt bearbeitet 21.11.2024 06:23:57
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.42), Climatix POL909 (AWM module) (All versions < V11.34). The web server of affected devices transmits data without TLS encryption. This could allow an unauthent...
CVE-2020-7574
- EPSS 0.37%
- Veröffentlicht 14.04.2020 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:37:24
A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions < V11.32). A persistent cross-site scripting (XSS) vulnerability exists in the "Server Config" web interface of the a...
CVE-2020-7575
- EPSS 0.37%
- Veröffentlicht 14.04.2020 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:37:24
A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions < V11.32). A persistent cross-site scripting (XSS) vulnerability exists in the web server access log page of the affe...