Total
5 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-27449 | 1 Mesalabs | 1 Amegaview | 2024-02-28 | 6.5 MEDIUM | 8.8 HIGH |
Mesa Labs AmegaView Versions 3.0 and prior has a command injection vulnerability that can be exploited to execute commands in the web server. | |||||
CVE-2021-27445 | 1 Mesalabs | 1 Amegaview | 2024-02-28 | 4.6 MEDIUM | 7.8 HIGH |
Mesa Labs AmegaView Versions 3.0 and prior has insecure file permissions that could be exploited to escalate privileges on the device. | |||||
CVE-2021-27453 | 1 Mesalabs | 1 Amegaview | 2024-02-28 | 7.5 HIGH | 9.8 CRITICAL |
Mesa Labs AmegaView Versions 3.0 uses default cookies that could be set to bypass authentication to the web application, which may allow an attacker to gain access. | |||||
CVE-2021-27451 | 1 Mesalabs | 1 Amegaview | 2024-02-28 | 7.5 HIGH | 9.8 CRITICAL |
Mesa Labs AmegaView Versions 3.0 and prior’s passcode is generated by an easily reversible algorithm, which may allow an attacker to gain access to the device. | |||||
CVE-2021-27447 | 1 Mesalabs | 1 Amegaview | 2024-02-28 | 7.5 HIGH | 9.8 CRITICAL |
Mesa Labs AmegaView version 3.0 is vulnerable to a command injection, which may allow an attacker to remotely execute arbitrary code. |