3xlogic kayıtları
3xlogic üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-287 Improper Authentication1
- CWE-295 Improper Certificate Validation1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-639 Authorization Bypass Through User-Controlled Key1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2020-11542İstismar yok | 3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the clie3xlogic · infinias eidc32 firmware · CWE-287 | Kritik9,8 | — | %1,0 | 4 Nis 2020 |
35İzleyin | CVE-2021-41847İstismar yok | An issue was discovered in 3xLogic Infinias Access Control through 6.7.10708.0, affecting physical security.3xlogic · infinias access control · CWE-639 | Yüksek8,8 | — | %1,6 | 1 Eki 2021 |
30İzleyin | CVE-2020-12681İstismar yok | Missing TLS certificate validation on 3xLogic Infinias eIDC32 devices through 3.4.125 allows an attacker to intercept/control the channel by3xlogic · infinias eidc32 firmware · CWE-295 | Yüksek7,5 | — | %0,5 | 26 Tem 2021 |
26İzleyin | CVE-2019-18651İstismar yok | A cross-site request forgery (CSRF) vulnerability in 3xLogic Infinias Access Control through 6.6.9586.0 allows remote attackers to execute m3xlogic · infinias access control firmware · CWE-352 | Orta6,5 | — | %0,7 | 14 Kas 2019 |
- CVE-2020-1154239İzleyin
3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the clie
KritikCVSS 9,8İstismar yokEPSS %13xlogic · infinias eidc32 firmware4 Nis 2020
- CVE-2021-4184735İzleyin
An issue was discovered in 3xLogic Infinias Access Control through 6.7.10708.0, affecting physical security.
YüksekCVSS 8,8İstismar yokEPSS %23xlogic · infinias access control1 Eki 2021
- CVE-2020-1268130İzleyin
Missing TLS certificate validation on 3xLogic Infinias eIDC32 devices through 3.4.125 allows an attacker to intercept/control the channel by
YüksekCVSS 7,5İstismar yokEPSS %13xlogic · infinias eidc32 firmware26 Tem 2021
- CVE-2019-1865126İzleyin
A cross-site request forgery (CSRF) vulnerability in 3xLogic Infinias Access Control through 6.6.9586.0 allows remote attackers to execute m
OrtaCVSS 6,5İstismar yokEPSS %13xlogic · infinias access control firmware14 Kas 2019