Vulnerabilities > Assaabloy > High

DATE CVE VULNERABILITY TITLE RISK
2023-08-03 CVE-2023-33370 Improper Handling of Exceptional Conditions vulnerability in Assaabloy Control ID Idsecure
An uncaught exception vulnerability exists in Control ID IDSecure 4.7.26.0 and prior, allowing attackers to cause the main web server of IDSecure to fault and crash, causing a denial of service.
network
low complexity
assaabloy CWE-755
7.5
2021-01-26 CVE-2020-23826 OS Command Injection vulnerability in Assaabloy Yale Wipc-303W Firmware 2.21/2.31
The Yale WIPC-303W 2.21 through 2.31 camera is vulnerable to remote command execution (RCE) through command injection via the HTTP API.
network
low complexity
assaabloy CWE-78
8.8