Vulnerability index

Browse CVEs

6 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Facesentry Access Control System Firmware HIGH 7.5
CVE-2019-25279

FaceSentry Access Control System 6.4.8 contains a cleartext password storage vulnerability that allows attackers to access unencrypted credentials in…

No fix yet
Fix from $1,950 2026-01-08
Facesentry Access Control System Firmware MEDIUM 6.1
CVE-2019-25277

FaceSentry Access Control System 6.4.8 contains a cross-site scripting vulnerability in the 'msg' parameter of pluginInstall.php that allows attacker…

No fix yet
Fix from $1,600 2026-01-08
Facesentry Access Control System Firmware MEDIUM 5.9
CVE-2019-25278

FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to intercept authentication crede…

No fix yet
Fix from $1,600 2026-01-08
Facesentry Access Control System Firmware HIGH 8.8
CVE-2019-25243

FaceSentry 6.4.8 contains an authenticated remote command injection vulnerability in pingTest.php and tcpPortTest.php scripts. Attackers can exploit …

No fix yet
Fix from $1,950 2025-12-24
Facesentry Access Control System Firmware CRITICAL 9.8
CVE-2019-25241

FaceSentry Access Control System 6.4.8 contains a critical authentication vulnerability with hard-coded SSH credentials for the wwwuser account. Atta…

Mitigation only
Fix from $2,300 2025-12-24
Facesentry Access Control System Firmware HIGH 8.8
CVE-2020-21999EPSS 5%

iWT Ltd FaceSentry Access Control System 6.4.8 suffers from an authenticated OS command injection vulnerability using default credentials. This can b…

No fix yet
Fix from $1,950 2021-05-04