Vulnerabilities (CVE)

Filtered by vendor Hgiga Subscribe
Filtered by product Powerstation Firmware
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-24837 1 Hgiga 2 Powerstation, Powerstation Firmware 2024-02-28 N/A 8.8 HIGH
HGiga PowerStation remote management function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can exploit this vulnerability to inject and execute arbitrary system commands to perform arbitrary system operation or disrupt service.
CVE-2023-24838 1 Hgiga 2 Powerstation, Powerstation Firmware 2024-02-28 N/A 9.8 CRITICAL
HGiga PowerStation has a vulnerability of Information Leakage. An unauthenticated remote attacker can exploit this vulnerability to obtain the administrator's credential. This credential can then be used to login PowerStation or Secure Shell to achieve remote code execution.