Записи relyum
14 опубликованных записей вендора relyum.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')5
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-284 Improper Access Control2
- CWE-862 Missing Authorization1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
- CWE-352 Cross-Site Request Forgery (CSRF)1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
14 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2023-47577Эксплойта нет | An issue discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 allows for unauthorized password changes due to no check for current passrelyum · rely-pcie firmware · CWE-522 | Критическая9,8 | — | 0,7 % | 12 дек. 2023 г. |
35Наблюдать | CVE-2023-47576Эксплойта нет | An issue was discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices, allowing authenticated command injection through the web intrelyum · rely-pcie firmware · CWE-77 | Высокая8,8 | — | 1,5 % | 12 дек. 2023 г. |
35Наблюдать | CVE-2024-44577Эксплойта нет | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the time_date function.relyum · rely-pcie firmware · CWE-77 | Высокая8,8 | — | 1,0 % | 11 сент. 2024 г. |
35Наблюдать | CVE-2024-44572Эксплойта нет | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_mgmt function.relyum · rely-pcie firmware · CWE-77 | Высокая8,8 | — | 1,0 % | 11 сент. 2024 г. |
35Наблюдать | CVE-2024-44574Эксплойта нет | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_conf function.relyum · rely-pcie firmware · CWE-77 | Высокая8,8 | — | 1,0 % | 11 сент. 2024 г. |
35Наблюдать | CVE-2023-47573Эксплойта нет | An issue discovered in Relyum RELY-PCIe 22.2.1 devices.relyum · rely-pcie firmware · CWE-862 | Высокая8,8 | — | 0,7 % | 12 дек. 2023 г. |
35Наблюдать | CVE-2024-44570Эксплойта нет | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a code injection vulnerability via the getParams function in phpinf.php.relyum · rely-pcie firmware · CWE-77 | Высокая8,8 | — | 0,5 % | 11 сент. 2024 г. |
35Наблюдать | CVE-2024-44571Эксплойта нет | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain incorrect access control in the mService function at phpinf.php.relyum · rely-pcie firmware · CWE-284 | Высокая8,8 | — | 0,4 % | 11 сент. 2024 г. |
35Наблюдать | CVE-2023-47578Эксплойта нет | Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices are susceptible to Cross Site Request Forgery (CSRF) attacks due to the absence of CSRF relyum · rely-pcie firmware · CWE-352 | Высокая8,8 | — | 0,3 % | 12 дек. 2023 г. |
30Наблюдать | CVE-2023-47579Эксплойта нет | Relyum RELY-PCIe 22.2.1 devices suffer from a system group misconfiguration, allowing read access to the central password hash file of the orelyum · rely-pcie firmware · CWE-284 | Высокая7,5 | — | 0,6 % | 12 дек. 2023 г. |
24Наблюдать | CVE-2023-47575Эксплойта нет | An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices.relyum · rely-pcie firmware · CWE-79 | Средняя6,1 | — | 0,4 % | 12 дек. 2023 г. |
23Наблюдать | CVE-2023-47574Эксплойта нет | An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices.relyum · rely-pcie firmware | Средняя5,9 | — | 0,5 % | 12 дек. 2023 г. |
18Наблюдать | CVE-2024-44573Эксплойта нет | A stored cross-site scripting (XSS) vulnerability in the VLAN configuration of RELY-PCIe v22.2.1 to v23.1.0 allows attackers to execute arbirelyum · rely-pcie firmware · CWE-79 | Средняя4,7 | — | 0,3 % | 11 сент. 2024 г. |
14Наблюдать | CVE-2024-44575Эксплойта нет | RELY-PCIe v22.2.1 to v23.1.0 does not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to relyum · rely-pcie firmware · CWE-732 | Низкая3,7 | — | 0,3 % | 11 сент. 2024 г. |
- CVE-2023-4757739Наблюдать
An issue discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 allows for unauthorized password changes due to no check for current pass
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2023-4757635Наблюдать
An issue was discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices, allowing authenticated command injection through the web int
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2024-4457735Наблюдать
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the time_date function.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %relyum · rely-pcie firmware11 сент. 2024 г.
- CVE-2024-4457235Наблюдать
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_mgmt function.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %relyum · rely-pcie firmware11 сент. 2024 г.
- CVE-2024-4457435Наблюдать
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_conf function.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %relyum · rely-pcie firmware11 сент. 2024 г.
- CVE-2023-4757335Наблюдать
An issue discovered in Relyum RELY-PCIe 22.2.1 devices.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2024-4457035Наблюдать
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a code injection vulnerability via the getParams function in phpinf.php.
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %relyum · rely-pcie firmware11 сент. 2024 г.
- CVE-2024-4457135Наблюдать
RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain incorrect access control in the mService function at phpinf.php.
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %relyum · rely-pcie firmware11 сент. 2024 г.
- CVE-2023-4757835Наблюдать
Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices are susceptible to Cross Site Request Forgery (CSRF) attacks due to the absence of CSRF
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2023-4757930Наблюдать
Relyum RELY-PCIe 22.2.1 devices suffer from a system group misconfiguration, allowing read access to the central password hash file of the o
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2023-4757524Наблюдать
An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices.
СредняяCVSS 6,1Эксплойта нетEPSS 0 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2023-4757423Наблюдать
An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices.
СредняяCVSS 5,9Эксплойта нетEPSS 0 %relyum · rely-pcie firmware12 дек. 2023 г.
- CVE-2024-4457318Наблюдать
A stored cross-site scripting (XSS) vulnerability in the VLAN configuration of RELY-PCIe v22.2.1 to v23.1.0 allows attackers to execute arbi
СредняяCVSS 4,7Эксплойта нетEPSS 0 %relyum · rely-pcie firmware11 сент. 2024 г.
- CVE-2024-4457514Наблюдать
RELY-PCIe v22.2.1 to v23.1.0 does not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to
НизкаяCVSS 3,7Эксплойта нетEPSS 0 %relyum · rely-pcie firmware11 сент. 2024 г.