Vulnerabilities > Assaabloy

DATE CVE VULNERABILITY TITLE RISK
2023-04-14 CVE-2023-2044 Cross-site Scripting vulnerability in Assaabloy Control ID Idsecure 4.7.29.1
A vulnerability has been found in Control iD iDSecure 4.7.29.1 and classified as problematic.
network
low complexity
assaabloy CWE-79
6.1
2021-01-26 CVE-2020-23826 OS Command Injection vulnerability in Assaabloy Yale Wipc-303W Firmware 2.21/2.31
The Yale WIPC-303W 2.21 through 2.31 camera is vulnerable to remote command execution (RCE) through command injection via the HTTP API.
network
low complexity
assaabloy CWE-78
8.8
2020-05-07 CVE-2020-10176 Code Injection vulnerability in Assaabloy Yale Wipc-301W Firmware 2.X.2.29/2.X.2.43
ASSA ABLOY Yale WIPC-301W 2.x.2.29 through 2.x.2.43_p1 devices allow Eval Injection of commands.
network
low complexity
assaabloy CWE-94
critical
9.8
2019-07-15 CVE-2019-13604 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Assaabloy HID Digitalpersona 4500 Firmware 24
There is a short key vulnerability in HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader v24.
network
high complexity
assaabloy CWE-327
5.9