Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2020-12842 ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/checkUserExpirationDate.php. Ismartgate Pro Firmware No fix yet Fix from $2,3002020-09-24 CRITICAL 9.8 CVE-2020-12843 ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading sounds to garage doors. The magic bytes for WAV must be used. Ismartgate Pro Firmware No fix yet Fix from $2,3002020-09-24 HIGH 8.1 CVE-2020-13119 ismartgate PRO 1.5.9 is vulnerable to clickjacking. Ismartgate Pro Firmware No fix yet Fix from $1,9502020-09-24 CRITICAL 9.8 CVE-2020-12838 ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/mailAdmin.php. Ismartgate Pro Firmware No fix yet Fix from $2,3002020-09-24 CRITICAL 9.8 CVE-2020-12839 ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/checkExpirationDate.php. Ismartgate Pro Firmware No fix yet Fix from $2,3002020-09-24 HIGH 8.8 CVE-2020-12282 iSmartgate PRO 1.5.9 is vulnerable to CSRF via the busca parameter in the form used for searching for users, accessible via /index.php. (This can be … Ismartgate Pro Firmware No fix yet Fix from $1,9502020-09-24 HIGH 7.5 CVE-2020-12837 ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading images to garage doors. The magic bytes of PNG must be used. Ismartgate Pro Firmware No fix yet Fix from $1,9502020-09-24 MEDIUM 6.5 CVE-2020-12281 iSmartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to create a new user via /index.php. Ismartgate Pro Firmware No fix yet Fix from $1,6002020-09-24 MEDIUM 6.5 CVE-2020-12840 ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload sound files via /index.php Ismartgate Pro Firmware No fix yet Fix from $1,6002020-09-24 MEDIUM 6.5 CVE-2020-12841 ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload imae files via /index.php Ismartgate Pro Firmware No fix yet Fix from $1,6002020-09-24 MEDIUM 6.5 CVE-2020-12280 iSmartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to open/close a specified garage door/gate via /isg/opendoor.php. Ismartgate Pro Firmware No fix yet Fix from $1,6002020-09-24