rad records
3 published records for vendor rad.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-31 Path Traversal: 'dir\..\..\filename'1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2020-13259Proof of concept | A vulnerability in the web-based management interface of RAD SecFlow-1v os-image SF_0290_2.3.01.26 could allow an unauthenticated, remote atrad · secflow-1v firmware · CWE-352 | High8.8 | — | 4.7% | Sep 16, 2020 |
30Monitor | CVE-2019-6268No exploit | RAD SecFlow-2 devices with Hardware 0202, Firmware 4.1.01.63, and U-Boot 2010.12 allow URIs beginning with /..CWE-31 | High7.5 | — | 0.8% | Mar 7, 2024 |
25Monitor | CVE-2020-13260Proof of concept | A vulnerability in the web-based management interface of RAD SecFlow-1v through 2020-05-21 could allow an authenticated attacker to upload arad · secflow-1v firmware · CWE-79 | Medium6.1 | — | 2.0% | Sep 17, 2020 |
- CVE-2020-1325936Monitor
A vulnerability in the web-based management interface of RAD SecFlow-1v os-image SF_0290_2.3.01.26 could allow an unauthenticated, remote at
HighCVSS 8.8Proof of conceptEPSS 5%rad · secflow-1v firmwareSep 16, 2020
- CVE-2019-626830Monitor
RAD SecFlow-2 devices with Hardware 0202, Firmware 4.1.01.63, and U-Boot 2010.12 allow URIs beginning with /..
HighCVSS 7.5No exploitEPSS 1%Mar 7, 2024
- CVE-2020-1326025Monitor
A vulnerability in the web-based management interface of RAD SecFlow-1v through 2020-05-21 could allow an authenticated attacker to upload a
MediumCVSS 6.1Proof of conceptEPSS 2%rad · secflow-1v firmwareSep 17, 2020