Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2019-10847 Computrols CBAS 18.0.0 allows Cross-Site Request Forgery. Computrols Building Automation Software after 19.0.0 Fix from $1,9502019-05-24 MEDIUM 5.3 CVE-2019-10848EPSS 8% Computrols CBAS 18.0.0 allows Username Enumeration. Computrols Building Automation Software after 19.0.0 Fix from $1,6002019-05-24 CRITICAL 9.8 CVE-2019-10850 Computrols CBAS 18.0.0 has Default Credentials. Computrols Building Automation Software after 19.0.0 Fix from $2,3002019-05-23 HIGH 7.5 CVE-2019-10849EPSS 9% Computrols CBAS 18.0.0 allows unprotected Subversion (SVN) directory / source code disclosure. Computrols Building Automation Software after 19.0.0 Fix from $1,9502019-05-23 MEDIUM 6.1 CVE-2019-10846 Computrols CBAS 18.0.0 allows Unauthenticated Reflected Cross-Site Scripting vulnerabilities in the login page and password reset page via the userna… Computrols Building Automation System after 19.0.0 Fix from $1,6002019-05-23 HIGH 7.5 CVE-2019-10855 Computrols CBAS 18.0.0 mishandles password hashes. The approach is MD5 with a pw prefix, e.g., if the password is admin, it will calculate the MD5 ha… Computrols Building Automation Software after 19.0.0 Fix from $1,9502019-05-23 HIGH 8.8 CVE-2019-10852 Computrols CBAS 18.0.0 allows Authenticated Blind SQL Injection via the id GET parameter, as demonstrated by the index.php?m=servers&a=start_pulling&… Computrols Building Automation Software after 19.0.0 Fix from $1,9502019-05-23 HIGH 8.8 CVE-2019-10854 Computrols CBAS 18.0.0 allows Authenticated Command Injection. Computrols Building Automation Software after 19.0.0 Fix from $1,9502019-05-23 HIGH 8.1 CVE-2019-10853 Computrols CBAS 18.0.0 allows Authentication Bypass. Computrols Building Automation Software after 19.0.0 Fix from $1,9502019-05-23 MEDIUM 6.5 CVE-2019-10851 Computrols CBAS 18.0.0 has hard-coded encryption keys. Computrols Building Automation Software after 19.0.0 Fix from $1,6002019-05-23