Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2023-25915 Due to improper input validation, an authenticated remote attacker could execute arbitrary commands on the target system. Ak Sm 800a Firmware after 3.3 Fix from $1,9502023-08-21 HIGH 8.8 CVE-2023-25914 Due to improper restriction, authenticated attackers could retrieve and read system files of the underlying server through the XML interface. The inf… Ak Sm 800a Firmware after 3.3 Fix from $1,9502023-08-21 HIGH 7.5 CVE-2023-25913 Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive information such as internal IP ad… Ak Sm 800a Firmware after 3.3 Fix from $1,9502023-08-21 CRITICAL 9.8 CVE-2023-22583 The Danfoss AK-EM100 web forms allow for SQL injection in the login forms. Ak Em100 Firmware 2.2.0.12+ Fix from $2,3002023-06-11 HIGH 8.8 CVE-2023-25911 The Danfoss AK-EM100 web applications allow for an authenticated user to perform OS command injection through the web application parameters. Ak Em100 Firmware 2.2.0.12+ Fix from $1,9502023-06-11 HIGH 7.5 CVE-2023-22584 The Danfoss AK-EM100 stores login credentials in cleartext. Ak Em100 Firmware 2.2.0.12+ Fix from $1,9502023-06-11 HIGH 7.5 CVE-2023-22586 The Danfoss AK-EM100 web applications allow for Local File Inclusion in the file parameter. Ak Em100 Firmware 2.2.0.12+ Fix from $1,9502023-06-11 MEDIUM 6.1 CVE-2023-22582 The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting. Ak Em100 Firmware 2.2.0.12+ Fix from $1,6002023-06-11 MEDIUM 6.1 CVE-2023-22585 The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting in the title parameter. Ak Em100 Firmware 2.2.0.12+ Fix from $1,6002023-06-11 MEDIUM 5.3 CVE-2023-25912 The webreport generation feature in the Danfoss AK-EM100 allows an unauthorized actor to generate a web report that discloses sensitive information s… Ak Em100 Firmware 2.2.0.12+ Fix from $1,6002023-06-11