A highly-available key value store for shared configuration Security Fix(es): * Information discosure via debug function (CVE-2021-28235) * Key name can be accessed via LeaseTimeToLive API (CVE-2023-3 ...
Continue ReadingJune 05, 2023
Hitron CODA-5310 has insufficient filtering for specific parameters in the connection test function. A remote attacker authenticated as an administrator, can use the management page to perform command ...
Continue ReadingJune 02, 2023
SGUDA U-Lock central lock control serviceâs user management function has incorrect authorization. A remote attacker with general user privilege can exploit this vulnerability to call privileged A ...
Continue ReadingJune 02, 2023
Hitron Technologies CODA-5310 Telnet function with the default account and password, and there is no warning or prompt to ask users to change the default password and account. An unauthenticated remot ...
Continue ReadingJune 02, 2023
It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technologies CODA-5310. An unauthorized remote attacker can exploit this vulnerability t ...
Continue ReadingJune 02, 2023
Hitron Technologies CODA-5310âs Telnet function transfers sensitive data in plaintext. An unauthenticated remote attacker can exploit this vulnerability to access credentials of normal users and ...
Continue ReadingJune 02, 2023
Hitron CODA-5310 has hard-coded encryption/decryption keys in the program code. A remote attacker authenticated as an administrator can decrypt system files using the hard-coded keys for file access, ...
Continue ReadingJune 02, 2023
ELITE TECHNOLOGY CORP. Web Fax has a vulnerability of SQL Injection. An unauthenticated remote attacker can inject SQL commands into the input field of the login page to perform arbitrary system comma ...
Continue ReadingJune 02, 2023
Back to Main