Vulnerabilities (CVE)

Filtered by vendor Resourcexpress Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-28898 1 Resourcexpress 1 Resourcexpress 2024-02-28 5.0 MEDIUM 5.3 MEDIUM
In QED ResourceXpress through 4.9k, a large numeric or alphanumeric value submitted in specific URL parameters causes a server error in script execution due to insufficient input validation.
CVE-2020-13877 1 Resourcexpress 1 Meeting Monitor 2024-02-28 7.5 HIGH 9.8 CRITICAL
SQL Injection issues in various ASPX pages of ResourceXpress Meeting Monitor 4.9 could lead to remote code execution and information disclosure.
CVE-2020-25746 1 Resourcexpress 2 Qubi3, Qubi3 Firmware 2024-02-28 2.1 LOW 4.6 MEDIUM
QED ResourceXpress Qubi3 devices before 1.40.9 could allow a local attacker (with physical access to the device) to obtain sensitive information via the debug interface (keystrokes over a USB cable), aka wireless password visibility.