voltronicpower kayıtları
voltronicpower üreticisine ait 25 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 15
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-749 Exposed Dangerous Method or Function9
- CWE-306 Missing Authentication for Critical Function2
- CWE-502 Deserialization of Untrusted Data2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-798 Use of Hard-coded Credentials1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
25 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
53Planlayın | CVE-2023-51595İstismar yok | Voltronic Power ViewPower Pro selectDeviceListBy SQL Injection Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-89 | Kritik9,8 | — | %48,2 | 2 May 2024 |
53Planlayın | CVE-2023-51573İstismar yok | Voltronic Power ViewPower Pro updateManagerPassword Exposed Dangerous Function Authentication Bypass Vulnerabilityvoltronicpower · viewpower · CWE-749 | Kritik9,8 | — | %45,7 | 1 Nis 2024 |
51Planlayın | CVE-2023-51572İstismar yok | Voltronic Power ViewPower Pro getMacAddressByIp Command Injection Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-78 | Kritik9,8 | — | %38,4 | 1 Nis 2024 |
41Planlayın | CVE-2023-51587İstismar yok | Voltronic Power ViewPower getModbusPassword Missing Authentication Information Disclosure Vulnerabilityvoltronicpower · viewpower · CWE-306 | Yüksek7,5 | — | %36,0 | 2 May 2024 |
39İzleyin | CVE-2023-51593İstismar yok | Voltronic Power ViewPower Pro Expression Language Injection Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-917 | Kritik9,8 | — | %1,6 | 2 May 2024 |
39İzleyin | CVE-2023-51574İstismar yok | Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerabilityvoltronicpower · viewpower · CWE-749 | Kritik9,8 | — | %1,6 | 2 May 2024 |
39İzleyin | CVE-2023-51576İstismar yok | Voltronic Power ViewPower Deserialization of Untrusted Data Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-502 | Kritik9,8 | — | %1,5 | 2 May 2024 |
39İzleyin | CVE-2023-51581İstismar yok | Voltronic Power ViewPower MacMonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-749 | Kritik9,8 | — | %1,5 | 2 May 2024 |
39İzleyin | CVE-2023-51590İstismar yok | Voltronic Power ViewPower Pro UpLoadAction Unrestricted File Upload Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-434 | Kritik9,8 | — | %1,5 | 2 May 2024 |
39İzleyin | CVE-2023-51575İstismar yok | Voltronic Power ViewPower MonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-749 | Kritik9,8 | — | %1,5 | 2 May 2024 |
39İzleyin | CVE-2023-51583İstismar yok | Voltronic Power ViewPower UpsScheduler Exposed Dangerous Method Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-749 | Kritik9,8 | — | %1,5 | 2 May 2024 |
39İzleyin | CVE-2023-51582İstismar yok | Voltronic Power ViewPower LinuxMonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-749 | Kritik9,8 | — | %1,5 | 2 May 2024 |
39İzleyin | CVE-2023-51586İstismar yok | Voltronic Power ViewPower Pro selectEventConfig SQL Injection Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-89 | Kritik9,8 | — | %1,3 | 2 May 2024 |
39İzleyin | CVE-2023-39073İstismar yok | An issue in SNMP Web Pro v.1.1 allows a remote attacker to execute arbitrary code and obtain senstive information via a crafted request.voltronicpower · snmp web pro · CWE-862 | Kritik9,8 | — | %1,1 | 12 Eyl 2023 |
39İzleyin | CVE-2023-33274İstismar yok | The authentication mechanism in PowerShield SNMP Web Pro 1.1 contains a vulnerability that allows unauthenticated users to directly access Cvoltronicpower · snmp web pro · CWE-287 | Kritik9,8 | — | %1,1 | 12 Tem 2023 |
39İzleyin | CVE-2023-51570İstismar yok | Voltronic Power ViewPower Pro Deserialization of Untrusted Data Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-502 | Kritik9,8 | — | %1,0 | 1 Nis 2024 |
35İzleyin | CVE-2023-51585İstismar yok | Voltronic Power ViewPower USBCommEx shutdown Command Injection Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-78 | Yüksek8,8 | — | %1,4 | 2 May 2024 |
35İzleyin | CVE-2023-51584İstismar yok | Voltronic Power ViewPower USBCommEx shutdown Exposed Dangerous Method Remote Code Execution Vulnerabilityvoltronicpower · viewpower · CWE-749 | Yüksek8,8 | — | %1,1 | 2 May 2024 |
31İzleyin | CVE-2023-51577İstismar yok | Voltronic Power ViewPower setShutdown Exposed Dangerous Method Local Privilege Escalation Vulnerabilityvoltronicpower · viewpower · CWE-749 | Yüksek7,8 | — | %0,3 | 2 May 2024 |
31İzleyin | CVE-2023-51579İstismar yok | Voltronic Power ViewPower Incorrect Permission Assignment Local Privilege Escalation Vulnerabilityvoltronicpower · viewpower · CWE-732 | Yüksek7,8 | — | %0,2 | 2 May 2024 |
31İzleyin | CVE-2023-51588İstismar yok | Voltronic Power ViewPower Pro MySQL Use of Hard-coded Credentials Local Privilege Escalation Vulnerabilityvoltronicpower · viewpower · CWE-798 | Yüksek7,8 | — | %0,2 | 2 May 2024 |
30İzleyin | CVE-2023-51578İstismar yok | Voltronic Power ViewPower MonitorConsole Exposed Dangerous Method Denial-of-Service Vulnerabilityvoltronicpower · viewpower · CWE-749 | Yüksek7,5 | — | %1,3 | 2 May 2024 |
30İzleyin | CVE-2023-51591İstismar yok | Voltronic Power ViewPower Pro doDocument XML External Entity Processing Information Disclosure Vulnerabilityvoltronicpower · viewpower · CWE-611 | Yüksek7,5 | — | %1,1 | 2 May 2024 |
30İzleyin | CVE-2023-51571İstismar yok | Voltronic Power ViewPower Pro SocketService Missing Authentication Denial-of-Service Vulnerabilityvoltronicpower · viewpower · CWE-306 | Yüksek7,5 | — | %0,7 | 1 Nis 2024 |
24İzleyin | CVE-2023-49563İstismar yok | Cross Site Scripting (XSS) in Voltronic Power SNMP Web Pro v.1.1 allows an attacker to execute arbitrary code via a crafted script within a voltronicpower · snmp web pro · CWE-79 | Orta6,1 | — | %0,5 | 12 Ara 2023 |
- CVE-2023-5159553Planlayın
Voltronic Power ViewPower Pro selectDeviceListBy SQL Injection Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %48voltronicpower · viewpower2 May 2024
- CVE-2023-5157353Planlayın
Voltronic Power ViewPower Pro updateManagerPassword Exposed Dangerous Function Authentication Bypass Vulnerability
KritikCVSS 9,8İstismar yokEPSS %46voltronicpower · viewpower1 Nis 2024
- CVE-2023-5157251Planlayın
Voltronic Power ViewPower Pro getMacAddressByIp Command Injection Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %38voltronicpower · viewpower1 Nis 2024
- CVE-2023-5158741Planlayın
Voltronic Power ViewPower getModbusPassword Missing Authentication Information Disclosure Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %36voltronicpower · viewpower2 May 2024
- CVE-2023-5159339İzleyin
Voltronic Power ViewPower Pro Expression Language Injection Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %2voltronicpower · viewpower2 May 2024
- CVE-2023-5157439İzleyin
Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerability
KritikCVSS 9,8İstismar yokEPSS %2voltronicpower · viewpower2 May 2024
- CVE-2023-5157639İzleyin
Voltronic Power ViewPower Deserialization of Untrusted Data Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %2voltronicpower · viewpower2 May 2024
- CVE-2023-5158139İzleyin
Voltronic Power ViewPower MacMonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5159039İzleyin
Voltronic Power ViewPower Pro UpLoadAction Unrestricted File Upload Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5157539İzleyin
Voltronic Power ViewPower MonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5158339İzleyin
Voltronic Power ViewPower UpsScheduler Exposed Dangerous Method Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5158239İzleyin
Voltronic Power ViewPower LinuxMonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5158639İzleyin
Voltronic Power ViewPower Pro selectEventConfig SQL Injection Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-3907339İzleyin
An issue in SNMP Web Pro v.1.1 allows a remote attacker to execute arbitrary code and obtain senstive information via a crafted request.
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · snmp web pro12 Eyl 2023
- CVE-2023-3327439İzleyin
The authentication mechanism in PowerShield SNMP Web Pro 1.1 contains a vulnerability that allows unauthenticated users to directly access C
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · snmp web pro12 Tem 2023
- CVE-2023-5157039İzleyin
Voltronic Power ViewPower Pro Deserialization of Untrusted Data Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1voltronicpower · viewpower1 Nis 2024
- CVE-2023-5158535İzleyin
Voltronic Power ViewPower USBCommEx shutdown Command Injection Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5158435İzleyin
Voltronic Power ViewPower USBCommEx shutdown Exposed Dangerous Method Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5157731İzleyin
Voltronic Power ViewPower setShutdown Exposed Dangerous Method Local Privilege Escalation Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0voltronicpower · viewpower2 May 2024
- CVE-2023-5157931İzleyin
Voltronic Power ViewPower Incorrect Permission Assignment Local Privilege Escalation Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0voltronicpower · viewpower2 May 2024
- CVE-2023-5158831İzleyin
Voltronic Power ViewPower Pro MySQL Use of Hard-coded Credentials Local Privilege Escalation Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0voltronicpower · viewpower2 May 2024
- CVE-2023-5157830İzleyin
Voltronic Power ViewPower MonitorConsole Exposed Dangerous Method Denial-of-Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5159130İzleyin
Voltronic Power ViewPower Pro doDocument XML External Entity Processing Information Disclosure Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1voltronicpower · viewpower2 May 2024
- CVE-2023-5157130İzleyin
Voltronic Power ViewPower Pro SocketService Missing Authentication Denial-of-Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1voltronicpower · viewpower1 Nis 2024
- CVE-2023-4956324İzleyin
Cross Site Scripting (XSS) in Voltronic Power SNMP Web Pro v.1.1 allows an attacker to execute arbitrary code via a crafted script within a
OrtaCVSS 6,1İstismar yokEPSS %1voltronicpower · snmp web pro12 Ara 2023