Sewio kayıtları
sewio üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation2
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-259 Use of Hard-coded Password1
- CWE-787 Out-of-bounds Write1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2022-45444İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select usesewio · real-time location system studio · CWE-259 | Kritik9,8 | — | %0,9 | 17 Oca 2023 |
39İzleyin | CVE-2022-41989İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not validate the length of RTLS report sewio · real-time location system studio · CWE-787 | Kritik9,8 | — | %0,8 | 17 Oca 2023 |
38İzleyin | CVE-2022-46733İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to cross-site scripting in itssewio · real-time location system studio · CWE-79 | Kritik9,6 | — | %0,6 | 17 Oca 2023 |
32İzleyin | CVE-2022-45127İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to cross-site request forgery sewio · real-time location system studio · CWE-352 | Yüksek8,1 | — | %0,3 | 17 Oca 2023 |
32İzleyin | CVE-2022-47395İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to cross-site request forgery sewio · real-time location system studio · CWE-352 | Yüksek8,1 | — | %0,3 | 17 Oca 2023 |
28İzleyin | CVE-2022-43483İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module sewio · real-time location system studio · CWE-78 | Yüksek7,2 | — | %1,2 | 17 Oca 2023 |
28İzleyin | CVE-2022-47911İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module sewio · real-time location system studio · CWE-78 | Yüksek7,2 | — | %1,2 | 17 Oca 2023 |
26İzleyin | CVE-2022-47917İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to improper input validation osewio · real-time location system studio · CWE-20 | Orta6,5 | — | %0,7 | 17 Oca 2023 |
26İzleyin | CVE-2022-43455İstismar yok | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to improper input validation osewio · real-time location system studio · CWE-20 | Orta6,5 | — | %0,6 | 17 Oca 2023 |
- CVE-2022-4544439İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select use
KritikCVSS 9,8İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023
- CVE-2022-4198939İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not validate the length of RTLS report
KritikCVSS 9,8İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023
- CVE-2022-4673338İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to cross-site scripting in its
KritikCVSS 9,6İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023
- CVE-2022-4512732İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to cross-site request forgery
YüksekCVSS 8,1İstismar yokEPSS %0sewio · real-time location system studio17 Oca 2023
- CVE-2022-4739532İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to cross-site request forgery
YüksekCVSS 8,1İstismar yokEPSS %0sewio · real-time location system studio17 Oca 2023
- CVE-2022-4348328İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module
YüksekCVSS 7,2İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023
- CVE-2022-4791128İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module
YüksekCVSS 7,2İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023
- CVE-2022-4791726İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to improper input validation o
OrtaCVSS 6,5İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023
- CVE-2022-4345526İzleyin
Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to improper input validation o
OrtaCVSS 6,5İstismar yokEPSS %1sewio · real-time location system studio17 Oca 2023