control4 kayıtları
control4 üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-204 Observable Response Discrepancy1
- CWE-354 Improper Validation of Integrity Check Value1
- CWE-420 Unprotected Alternate Channel1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2023-31241İstismar yok | Snap One OvrC cloud servers contain a route an attacker can use to bypass requirements and claim devices outright.snapone · orvc · CWE-420 | Kritik10,0 | — | %0,8 | 22 May 2023 |
39İzleyin | CVE-2023-28386İstismar yok | Snap One OvrC Pro devices versions 7.2 and prior do not validate firmware updates correctly.snapone · orvc · CWE-354 | Kritik9,8 | — | %0,4 | 22 May 2023 |
24İzleyin | CVE-2023-31245İstismar yok | Devices using Snap One OvrC cloud are sent to a web address when accessing a web management interface using a HTTP snapone · orvc · CWE-601 | Orta6,1 | — | %0,4 | 22 May 2023 |
21İzleyin | CVE-2023-28412İstismar yok | When supplied with a random MAC address, Snap One OvrC cloud servers will return information about the device.snapone · orvc · CWE-204 | Orta5,3 | — | %0,5 | 22 May 2023 |
- CVE-2023-3124140Planlayın
Snap One OvrC cloud servers contain a route an attacker can use to bypass requirements and claim devices outright.
KritikCVSS 10,0İstismar yokEPSS %1snapone · orvc22 May 2023
- CVE-2023-2838639İzleyin
Snap One OvrC Pro devices versions 7.2 and prior do not validate firmware updates correctly.
KritikCVSS 9,8İstismar yokEPSS %0snapone · orvc22 May 2023
- CVE-2023-3124524İzleyin
Devices using Snap One OvrC cloud are sent to a web address when accessing a web management interface using a HTTP
OrtaCVSS 6,1İstismar yokEPSS %0snapone · orvc22 May 2023
- CVE-2023-2841221İzleyin
When supplied with a random MAC address, Snap One OvrC cloud servers will return information about the device.
OrtaCVSS 5,3İstismar yokEPSS %0snapone · orvc22 May 2023