ChangingTec records
24 published records for vendor changingtec.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-20 Improper Input Validation3
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-494 Download of Code Without Integrity Check2
- CWE-121 Stack-based Buffer Overflow2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
The weakness classes this vendor ships most often: where to look.
CWEAll records
24 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2022-39060No exploit | ChangingTec MegaServiSignAdapter - Improper Input Validationchangingtec · megaservisignadapter · CWE-20 | Critical9.8 | — | 0.9% | Jan 31, 2023 |
39Monitor | CVE-2022-39056No exploit | Changing Information Technology Inc. RAVA certificate validation system - SQL Injectionchangingtec · rava certificate validation system · CWE-89 | Critical9.8 | — | 0.8% | Oct 18, 2022 |
37Monitor | CVE-2026-3000No exploit | Changing|IDExpert Windows Logon Agent - Remote Code Executionchangingtec · idexpert · CWE-494 | Critical9.3 | — | 0.6% | Mar 2, 2026 |
37Monitor | CVE-2026-2999No exploit | Changing|IDExpert Windows Logon Agent - Remote Code Executionchangingtec · idexpert · CWE-494 | Critical9.3 | — | 0.6% | Mar 2, 2026 |
36Monitor | CVE-2020-3925No exploit | ServiSign Windows Versions- Remote Code Execution via LoadLibrarychangingtec · servisign | High8.8 | — | 2.8% | Feb 3, 2020 |
35Monitor | CVE-2022-46304No exploit | ChangingTec ServiSign - Command Injectionchangingtec · servisign · CWE-78 | High8.8 | — | 1.5% | Jan 2, 2023 |
35Monitor | CVE-2024-40720No exploit | CHANGING Information Technology TCBServiSign Windows Version - Improper Input Validationchangingtec · tcb servisign · CWE-20 | High8.8 | — | 0.6% | Aug 2, 2024 |
35Monitor | CVE-2024-40721No exploit | CHANGING Information Technology TCBServiSign Windows Version - Improper Input Validationchangingtec · tcb servisign · CWE-20 | High8.8 | — | 0.6% | Aug 2, 2024 |
35Monitor | CVE-2021-44161No exploit | Changing Information Technology Inc. MOTP(Mobile One Time Password) - SQL Injectionchangingtec · motp · CWE-89 | High8.8 | — | 0.5% | Dec 29, 2021 |
31Monitor | CVE-2022-39058No exploit | Changing Information Technology Inc. RAVA certificate validation system - Path Traversalchangingtec · rava certificate validation system · CWE-22 | High7.5 | — | 1.9% | Oct 18, 2022 |
31Monitor | CVE-2022-46306No exploit | ChangingTec ServiSign - Path Traversalchangingtec · servisign · CWE-22 | High7.8 | — | 0.9% | Jan 2, 2023 |
30Monitor | CVE-2020-3926No exploit | ServiSign Windows Versions- Arbitrary File Accesschangingtec · servisign · CWE-552 | High7.5 | — | 1.5% | Feb 3, 2020 |
30Monitor | CVE-2020-3927No exploit | ServiSign Windows Versions- Arbitrary File Deletionchangingtec · servisign · CWE-552 | High7.5 | — | 1.2% | Feb 3, 2020 |
30Monitor | CVE-2022-39059No exploit | ChangingTec MegaServiSignAdapter - Path Traversalchangingtec · megaservisignadapter · CWE-22 | High7.5 | — | 1.0% | Jan 31, 2023 |
28Monitor | CVE-2022-39057No exploit | Changing Information Technology Inc. RAVA certificate validation system - Command Injectionchangingtec · rava certificate validation system · CWE-78 | High7.2 | — | 0.8% | Oct 18, 2022 |
28Monitor | CVE-2024-3123No exploit | CHANGING Mobile One Time Password - Arbitrary File Uploadchanging · mobile one time password · CWE-434 | High7.2 | — | 0.6% | Jul 1, 2024 |
28Monitor | CVE-2024-10653No exploit | CHANGING Information Technology IDExpert - OS Command Injectionchanging information technology · idexpert · CWE-78 | High7.2 | — | 0.6% | Nov 1, 2024 |
26Monitor | CVE-2022-39061No exploit | ChangingTec MegaServiSignAdapter - Out-of-bounds Readchangingtec · megaservisignadapter · CWE-125 | Medium6.5 | — | 0.7% | Jan 31, 2023 |
26Monitor | CVE-2022-46305No exploit | ChangingTec ServiSign - Path Traversalchangingtec · servisign · CWE-22 | Medium6.5 | — | 0.4% | Jan 2, 2023 |
26Monitor | CVE-2024-40719No exploit | CHANGING Information Technology TCBServiSign Windows Version - Inadequate Encryption Strengthchangingtec · tcb servisign · CWE-326 | Medium6.5 | — | 0.2% | Aug 2, 2024 |
21Monitor | CVE-2022-39055No exploit | Changing Information Technology Inc. RAVA certificate validation system - Server-Side Request Forgery (SSRF)changingtec · rava certificate validation system · CWE-918 | Medium5.3 | — | 0.5% | Oct 18, 2022 |
19Monitor | CVE-2023-22901No exploit | ChangingTec MOTP - Path Traversalchangingtec · mobile one time password · CWE-22 | Medium4.9 | — | 0.9% | Apr 26, 2023 |
17Monitor | CVE-2024-40723No exploit | CHANGING Information Technology HWATAIServiSign Windows Version - Stack-based Buffer Overflowchangingtec · hwatai servisign · CWE-121 | Medium4.3 | — | 0.5% | Aug 2, 2024 |
17Monitor | CVE-2024-40722No exploit | CHANGING Information Technology TCBServiSign Windows Version - Stack-based Buffer Overflowchangingtec · tcb servisign · CWE-121 | Medium4.3 | — | 0.5% | Aug 2, 2024 |
- CVE-2022-3906039Monitor
ChangingTec MegaServiSignAdapter - Improper Input Validation
CriticalCVSS 9.8No exploitEPSS 1%changingtec · megaservisignadapterJan 31, 2023
- CVE-2022-3905639Monitor
Changing Information Technology Inc. RAVA certificate validation system - SQL Injection
CriticalCVSS 9.8No exploitEPSS 1%changingtec · rava certificate validation systemOct 18, 2022
- CVE-2026-300037Monitor
Changing|IDExpert Windows Logon Agent - Remote Code Execution
CriticalCVSS 9.3No exploitEPSS 1%changingtec · idexpertMar 2, 2026
- CVE-2026-299937Monitor
Changing|IDExpert Windows Logon Agent - Remote Code Execution
CriticalCVSS 9.3No exploitEPSS 1%changingtec · idexpertMar 2, 2026
- CVE-2020-392536Monitor
ServiSign Windows Versions- Remote Code Execution via LoadLibrary
HighCVSS 8.8No exploitEPSS 3%changingtec · servisignFeb 3, 2020
- CVE-2022-4630435Monitor
ChangingTec ServiSign - Command Injection
HighCVSS 8.8No exploitEPSS 2%changingtec · servisignJan 2, 2023
- CVE-2024-4072035Monitor
CHANGING Information Technology TCBServiSign Windows Version - Improper Input Validation
HighCVSS 8.8No exploitEPSS 1%changingtec · tcb servisignAug 2, 2024
- CVE-2024-4072135Monitor
CHANGING Information Technology TCBServiSign Windows Version - Improper Input Validation
HighCVSS 8.8No exploitEPSS 1%changingtec · tcb servisignAug 2, 2024
- CVE-2021-4416135Monitor
Changing Information Technology Inc. MOTP(Mobile One Time Password) - SQL Injection
HighCVSS 8.8No exploitEPSS 0%changingtec · motpDec 29, 2021
- CVE-2022-3905831Monitor
Changing Information Technology Inc. RAVA certificate validation system - Path Traversal
HighCVSS 7.5No exploitEPSS 2%changingtec · rava certificate validation systemOct 18, 2022
- CVE-2022-4630631Monitor
ChangingTec ServiSign - Path Traversal
HighCVSS 7.8No exploitEPSS 1%changingtec · servisignJan 2, 2023
- CVE-2020-392630Monitor
ServiSign Windows Versions- Arbitrary File Access
HighCVSS 7.5No exploitEPSS 1%changingtec · servisignFeb 3, 2020
- CVE-2020-392730Monitor
ServiSign Windows Versions- Arbitrary File Deletion
HighCVSS 7.5No exploitEPSS 1%changingtec · servisignFeb 3, 2020
- CVE-2022-3905930Monitor
ChangingTec MegaServiSignAdapter - Path Traversal
HighCVSS 7.5No exploitEPSS 1%changingtec · megaservisignadapterJan 31, 2023
- CVE-2022-3905728Monitor
Changing Information Technology Inc. RAVA certificate validation system - Command Injection
HighCVSS 7.2No exploitEPSS 1%changingtec · rava certificate validation systemOct 18, 2022
- CVE-2024-312328Monitor
CHANGING Mobile One Time Password - Arbitrary File Upload
HighCVSS 7.2No exploitEPSS 1%changing · mobile one time passwordJul 1, 2024
- CVE-2024-1065328Monitor
CHANGING Information Technology IDExpert - OS Command Injection
HighCVSS 7.2No exploitEPSS 1%changing information technology · idexpertNov 1, 2024
- CVE-2022-3906126Monitor
ChangingTec MegaServiSignAdapter - Out-of-bounds Read
MediumCVSS 6.5No exploitEPSS 1%changingtec · megaservisignadapterJan 31, 2023
- CVE-2022-4630526Monitor
ChangingTec ServiSign - Path Traversal
MediumCVSS 6.5No exploitEPSS 0%changingtec · servisignJan 2, 2023
- CVE-2024-4071926Monitor
CHANGING Information Technology TCBServiSign Windows Version - Inadequate Encryption Strength
MediumCVSS 6.5No exploitEPSS 0%changingtec · tcb servisignAug 2, 2024
- CVE-2022-3905521Monitor
Changing Information Technology Inc. RAVA certificate validation system - Server-Side Request Forgery (SSRF)
MediumCVSS 5.3No exploitEPSS 0%changingtec · rava certificate validation systemOct 18, 2022
- CVE-2023-2290119Monitor
ChangingTec MOTP - Path Traversal
MediumCVSS 4.9No exploitEPSS 1%changingtec · mobile one time passwordApr 26, 2023
- CVE-2024-4072317Monitor
CHANGING Information Technology HWATAIServiSign Windows Version - Stack-based Buffer Overflow
MediumCVSS 4.3No exploitEPSS 0%changingtec · hwatai servisignAug 2, 2024
- CVE-2024-4072217Monitor
CHANGING Information Technology TCBServiSign Windows Version - Stack-based Buffer Overflow
MediumCVSS 4.3No exploitEPSS 0%changingtec · tcb servisignAug 2, 2024