Vulnerability index

Browse CVEs

24 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Emerge E3 Firmware CRITICAL 9.8
CVE-2022-31499EPSS 65%

Nortek Linear eMerge E3-Series devices before 0.32-08f allow an unauthenticated attacker to inject OS commands via ReaderNo. NOTE: this issue exists …

Fix: after 0.32-09c
Fix from $2,300 2022-08-25
Emerge E3 Firmware MEDIUM 6.1
CVE-2022-31798EPSS 7%

Nortek Linear eMerge E3-Series 0.32-07p devices are vulnerable to /card_scan.php?CardFormatNo= XSS with session fixation (via PHPSESSID) when they ar…

Fix: after 0.32-07p
Fix from $1,600 2022-08-25
Emerge E3 Firmware HIGH 8.2
CVE-2022-31269EPSS 5%

Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to open a building's doors. (This…

Fix: after 0.32-09c
Fix from $1,950 2022-08-25
Linear Emerge Essential Firmware CRITICAL 10.0
CVE-2019-7257EPSS 70%

Linear eMerge E3-Series devices allow Unrestricted File Upload.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7256 KEVEPSS 97%

Linear eMerge E3-Series devices allow Command Injections.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware HIGH 8.8
CVE-2019-7258EPSS 20%

Linear eMerge E3-Series devices allow Privilege Escalation.

Fix: after 1.00-06
Fix from $1,950 2019-07-02
Linear Emerge Essential Firmware HIGH 7.5
CVE-2019-7254EPSS 82%

Linear eMerge E3-Series devices allow File Inclusion.

Fix: after 1.00-06
Fix from $1,950 2019-07-02
Linear Emerge Essential Firmware MEDIUM 6.1
CVE-2019-7255EPSS 56%

Linear eMerge E3-Series devices allow XSS.

Fix: after 1.00-06
Fix from $1,600 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7252

Linear eMerge E3-Series devices have Default Credentials.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7253

Linear eMerge E3-Series devices allow Directory Traversal.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7260EPSS 7%

Linear eMerge E3-Series devices have Cleartext Credentials in a Database.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7261EPSS 5%

Linear eMerge E3-Series devices have Hard-coded Credentials.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware HIGH 8.8
CVE-2019-7262EPSS 16%

Linear eMerge E3-Series devices allow Cross-Site Request Forgery (CSRF).

Fix: after 1.00-06
Fix from $1,950 2019-07-02
Linear Emerge Essential Firmware HIGH 8.8
CVE-2019-7259EPSS 13%

Linear eMerge E3-Series devices allow Authorization Bypass with Information Disclosure.

Fix: after 1.00-06
Fix from $1,950 2019-07-02
Linear Emerge 50p Firmware CRITICAL 10.0
CVE-2019-7268EPSS 6%

Linear eMerge 50P/5000P devices allow Unauthenticated File Upload.

Fix: after 4.6.07
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7264

Linear eMerge E3-Series devices allow a Stack-based Buffer Overflow on the ARM platform.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7265EPSS 23%

Linear eMerge E3-Series devices allow Remote Code Execution (root access over SSH).

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge 50p Firmware CRITICAL 9.8
CVE-2019-7266

Linear eMerge 50P/5000P devices allow Authentication Bypass.

Fix: after 4.6.07
Fix from $2,300 2019-07-02
Linear Emerge 50p Firmware CRITICAL 9.8
CVE-2019-7267EPSS 21%

Linear eMerge 50P/5000P devices allow Cookie Path Traversal.

Fix: after 4.6.07
Fix from $2,300 2019-07-02
Linear Emerge 50p Firmware CRITICAL 9.8
CVE-2019-7269EPSS 40%

Linear eMerge 50P/5000P devices allow Authenticated Command Injection with root Code Execution.

Fix: after 4.6.07
Fix from $2,300 2019-07-02
Linear Emerge 50p Firmware HIGH 8.8
CVE-2019-7270

Linear eMerge 50P/5000P devices allow Cross-Site Request Forgery (CSRF).

Fix: after 4.6.07
Fix from $1,950 2019-07-02
Linear Emerge Essential Firmware CRITICAL 9.8
CVE-2019-7263

Linear eMerge E3-Series devices have a Version Control Failure.

Fix: after 1.00-06
Fix from $2,300 2019-07-02
Linear Emerge 50p Firmware CRITICAL 9.8
CVE-2019-7271

Nortek Linear eMerge 50P/5000P devices have Default Credentials.

Fix: after 4.6.07
Fix from $2,300 2019-07-01
Emerge E3 Firmware CRITICAL 9.8
CVE-2018-5439

A Command Injection issue was discovered in Nortek Linear eMerge E3 series Versions V0.32-07e and prior. A remote attacker may be able to execute arb…

Fix: after 0.32-07e
Fix from $2,300 2018-02-19