Vulnerabilities > BAB Technologie > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-09 CVE-2021-28910 Server-Side Request Forgery (SSRF) vulnerability in Bab-Technologie Eibport Firmware 3.8.2/3.8.3
BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic SSRF vulnerability.
network
low complexity
bab-technologie CWE-918
7.5
2021-09-09 CVE-2021-28912 Weak Password Requirements vulnerability in Bab-Technologie Eibport Firmware 3.8.2/3.8.3
BAB TECHNOLOGIE GmbH eibPort V3.
network
low complexity
bab-technologie CWE-521
7.2
2020-11-12 CVE-2020-24573 Resource Exhaustion vulnerability in Bab-Technologie Eibport Firmware 3.8.2
BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of service (Uncontrolled Resource Consumption) via requests to the lighttpd component.
network
low complexity
bab-technologie CWE-400
7.5