Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.8
CVE-2022-25322EPSS 8%
ZEROF Web Server 2.0 allows /HandleEvent SQL Injection.
Web Server
No fix yet
MEDIUM 6.1
CVE-2022-25323
ZEROF Web Server 2.0 allows /admin.back XSS.
Web Server
No fix yet
CRITICAL 9.8
CVE-2021-30175EPSS 9%
ZEROF Web Server 1.0 (April 2021) allows SQL Injection via the /HandleEvent endpoint for the login page.
Web Server
Mitigation only
CRITICAL 9.8
CVE-2021-30176EPSS 29%
The ZEROF Expert pro/2.0 application for mobile devices allows SQL Injection via the Authorization header to the /v2/devices/add endpoint.
Expert
Mitigation only