SECOM records
9 published records for vendor secom.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')3
- CWE-798 Use of Hard-coded Credentials2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2021-35961No exploit | TAIWAN SECOM CO., LTD., Door Access Control and Personnel Attendance Management system - Use of Hard-coded Credentialssecom · dr.id access control · CWE-798 | Critical9.8 | — | 2.2% | Jul 16, 2021 |
39Monitor | CVE-2020-3934No exploit | TAIWAN SECOM CO., LTD. - Pre-auth SQL Injectionsecom · dr.id access control · CWE-89 | Critical9.8 | — | 1.4% | Feb 11, 2020 |
39Monitor | CVE-2024-7732No exploit | SECOM Dr.ID Attendance system - Unrestricted File Uploadsecom · dr.id attendance system · CWE-89 | Critical9.8 | — | 0.9% | Aug 14, 2024 |
39Monitor | CVE-2024-10118No exploit | SECOM WRTR-304GN-304TW-UPSC - OS Command Injectionsecom · wrtr-304gn-304tw-upsc · CWE-78 | Critical9.8 | — | 0.9% | Oct 18, 2024 |
39Monitor | CVE-2024-7731No exploit | SECOM Dr.ID Access control system - SQL injectionsecom · dr.id access control · CWE-89 | Critical9.8 | — | 0.8% | Aug 14, 2024 |
31Monitor | CVE-2021-35962No exploit | TAIWAN SECOM CO., LTD., Door Access Control and Personnel Attendance Management system - Path Traversalsecom · door access control · CWE-22 | High7.5 | — | 1.8% | Jul 16, 2021 |
30Monitor | CVE-2020-3935No exploit | TAIWAN SECOM CO., LTD. – Sensitivity Information Exposuresecom · dr.id access control · CWE-312 | High7.5 | — | 0.9% | Feb 11, 2020 |
29Monitor | CVE-2022-26671Proof of concept | TAIWAN SECOM CO., LTD., a xDoor Access Control and Personnel Attendance Management system - Hard-coded Credentialssecom · dr.id access control · CWE-798 | High7.3 | — | 1.0% | Apr 7, 2022 |
21Monitor | CVE-2020-3933No exploit | TAIWAN SECOM CO., LTD. - User Account Enumerationsecom · dr.id access control | Medium5.3 | — | 1.2% | Feb 11, 2020 |
- CVE-2021-3596140Plan
TAIWAN SECOM CO., LTD., Door Access Control and Personnel Attendance Management system - Use of Hard-coded Credentials
CriticalCVSS 9.8No exploitEPSS 2%secom · dr.id access controlJul 16, 2021
- CVE-2020-393439Monitor
TAIWAN SECOM CO., LTD. - Pre-auth SQL Injection
CriticalCVSS 9.8No exploitEPSS 1%secom · dr.id access controlFeb 11, 2020
- CVE-2024-773239Monitor
SECOM Dr.ID Attendance system - Unrestricted File Upload
CriticalCVSS 9.8No exploitEPSS 1%secom · dr.id attendance systemAug 14, 2024
- CVE-2024-1011839Monitor
SECOM WRTR-304GN-304TW-UPSC - OS Command Injection
CriticalCVSS 9.8No exploitEPSS 1%secom · wrtr-304gn-304tw-upscOct 18, 2024
- CVE-2024-773139Monitor
SECOM Dr.ID Access control system - SQL injection
CriticalCVSS 9.8No exploitEPSS 1%secom · dr.id access controlAug 14, 2024
- CVE-2021-3596231Monitor
TAIWAN SECOM CO., LTD., Door Access Control and Personnel Attendance Management system - Path Traversal
HighCVSS 7.5No exploitEPSS 2%secom · door access controlJul 16, 2021
- CVE-2020-393530Monitor
TAIWAN SECOM CO., LTD. – Sensitivity Information Exposure
HighCVSS 7.5No exploitEPSS 1%secom · dr.id access controlFeb 11, 2020
- CVE-2022-2667129Monitor
TAIWAN SECOM CO., LTD., a xDoor Access Control and Personnel Attendance Management system - Hard-coded Credentials
HighCVSS 7.3Proof of conceptEPSS 1%secom · dr.id access controlApr 7, 2022
- CVE-2020-393321Monitor
TAIWAN SECOM CO., LTD. - User Account Enumeration
MediumCVSS 5.3No exploitEPSS 1%secom · dr.id access controlFeb 11, 2020