Vulnerabilities > Cayintech

DATE CVE VULNERABILITY TITLE RISK
2020-08-06 CVE-2020-7357 OS Command Injection vulnerability in Cayintech products
Cayin CMS suffers from an authenticated OS semi-blind command injection vulnerability using default credentials.
network
low complexity
cayintech CWE-78
critical
9.9
2020-08-06 CVE-2020-7356 SQL Injection vulnerability in Cayintech Xpost 1.0/2.0/2.5.18103
CAYIN xPost suffers from an unauthenticated SQL Injection vulnerability.
network
low complexity
cayintech CWE-89
critical
10.0
2020-01-13 CVE-2020-6955 Cross-site Scripting vulnerability in Cayintech Smp-Pro4 Firmware
An issue was discovered on Cayin SMP-PRO4 devices.
network
cayintech CWE-79
4.3
2020-01-13 CVE-2020-6954 Insufficiently Protected Credentials vulnerability in Cayintech Smp-Pro4 Firmware
An issue was discovered on Cayin SMP-PRO4 devices.
network
low complexity
cayintech CWE-522
4.0